Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Projectworlds — Vulnerabilities & Security Advisories 101

Browse all 101 CVE security advisories affecting Projectworlds. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Projectworlds operates as a provider of enterprise resource planning and business management software, primarily targeting small to medium-sized enterprises for inventory, sales, and accounting automation. Security audits have identified a significant volume of vulnerabilities, with 101 Common Vulnerabilities and Exposures currently documented. The most prevalent issues involve remote code execution and cross-site scripting, often stemming from inadequate input validation in web interfaces. Additionally, the platform has historically suffered from broken access control flaws, allowing unauthorized privilege escalation and data exposure. These weaknesses suggest systemic gaps in secure coding practices and rigorous penetration testing protocols. While no single catastrophic breach has been widely publicized, the high count of active CVEs indicates persistent exposure to automated exploitation tools. Organizations relying on this software must prioritize immediate patching and network segmentation to mitigate the risk of compromise, given the consistent pattern of critical severity ratings in recent disclosures.

Found 9 results / 101Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-3186 projectworlds Online Doctor Appointment Booking System invoice.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3185 projectworlds Online Doctor Appointment Booking System patientupdateprofile.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3184 projectworlds Online Doctor Appointment Booking System profile.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3183 projectworlds Online Doctor Appointment Booking System patientupdateprofile.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3182 projectworlds Online Doctor Appointment Booking System getschedule.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3181 projectworlds Online Doctor Appointment Booking System appointment.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3180 projectworlds Online Doctor Appointment Booking System deleteschedule.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3179 projectworlds Online Doctor Appointment Booking System deletepatient.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03
CVE-2025-3178 projectworlds Online Doctor Appointment Booking System deleteappointment.php sql injection — Online Doctor Appointment Booking SystemCWE-89 7.3 High2025-04-03

This page lists every published CVE security advisory associated with Projectworlds. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.