Search Results (3 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-0643 1 Projectworlds 1 House Rental And Property Listing Project 2026-01-07 7.3 High
A flaw has been found in projectworlds House Rental and Property Listing 1.0. Impacted is an unknown function of the file /app/register.php?action=reg of the component Signup. This manipulation of the argument image causes unrestricted upload. Remote exploitation of the attack is possible. The exploit has been published and may be used.
CVE-2026-0642 1 Projectworlds 1 House Rental And Property Listing Project 2026-01-07 2.4 Low
A vulnerability was detected in projectworlds House Rental and Property Listing 1.0. This issue affects some unknown processing of the file /app/complaint.php. The manipulation of the argument Name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
CVE-2020-24202 1 Projectworlds 1 House Rental And Property Listing Project 2024-11-21 9.8 Critical
File Upload component in Projects World House Rental v1.0 suffers from an arbitrary file upload vulnerability with regular users, which allows remote attackers to conduct code execution.