Description
A vulnerability has been found in projectworlds Lawyer Management System 1.0. This impacts an unknown function of the file /lawyer_booking.php. The manipulation of the argument Description leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Problem types
Product status
Timeline
| 2026-03-23: | Advisory disclosed |
| 2026-03-23: | VulDB entry created |
| 2026-03-23: | VulDB entry last update |
Credits
WangYiQi (VulDB User)
References
vuldb.com/?id.352494 (VDB-352494 | projectworlds Lawyer Management System lawyer_booking.php cross site scripting)
vuldb.com/?ctiid.352494 (VDB-352494 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.775791 (Submit #775791 | projectworlds Lawyer Management System v1.0 Cross Site Scripting)
github.com/eqiya17/collection-of-vulnerability/issues/2