6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in projectworlds Gate Pass Management System 1.0. This issue affects some unknown processing of the file /add-pass.php. Such manipulation of the argument fullname leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-11557
Source
VulDB
Published
Oct 9, 2025 at 21:02
Affected Product
Vendor
projectworlds
Product
Gate Pass Management System
Version
1.0
Affected Versions
projectworlds Gate Pass Management System 1.0