Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

projectworlds — Vulnerabilities & Security Advisories 101

Browse all 101 CVE security advisories affecting projectworlds. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Projectworlds operates as a provider of enterprise resource planning and business management software, primarily targeting small to medium-sized enterprises for inventory, sales, and accounting automation. Security audits have identified a significant volume of vulnerabilities, with 101 Common Vulnerabilities and Exposures currently documented. The most prevalent issues involve remote code execution and cross-site scripting, often stemming from inadequate input validation in web interfaces. Additionally, the platform has historically suffered from broken access control flaws, allowing unauthorized privilege escalation and data exposure. These weaknesses suggest systemic gaps in secure coding practices and rigorous penetration testing protocols. While no single catastrophic breach has been widely publicized, the high count of active CVEs indicates persistent exposure to automated exploitation tools. Organizations relying on this software must prioritize immediate patching and network segmentation to mitigate the risk of compromise, given the consistent pattern of critical severity ratings in recent disclosures.

Found 11 results / 101Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-6136 Projectworlds Life Insurance Management System insertPayment.php sql injection — Life Insurance Management SystemCWE-89 6.3 Medium2025-06-16
CVE-2025-6135 Projectworlds Life Insurance Management System insertNominee.php sql injection — Life Insurance Management SystemCWE-89 6.3 Medium2025-06-16
CVE-2025-6134 Projectworlds Life Insurance Management System insertClient.php sql injection — Life Insurance Management SystemCWE-89 6.3 Medium2025-06-16
CVE-2025-6133 Projectworlds Life Insurance Management System insertagent.php sql injection — Life Insurance Management SystemCWE-89 6.3 Medium2025-06-16
CVE-2025-4836 Projectworlds Life Insurance Management System deleteAgent.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-05-17
CVE-2025-2067 projectworlds Life Insurance Management System search.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-03-07
CVE-2025-2066 projectworlds Life Insurance Management System updateAgent.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-03-07
CVE-2025-2065 projectworlds Life Insurance Management System editAgent.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-03-07
CVE-2025-2064 projectworlds Life Insurance Management System deletePayment.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-03-07
CVE-2025-2063 projectworlds Life Insurance Management System deleteNominee.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-03-07
CVE-2025-2062 projectworlds Life Insurance Management System clientStatus.php sql injection — Life Insurance Management SystemCWE-89 7.3 High2025-03-07

This page lists every published CVE security advisory associated with projectworlds. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.