Metrics
Affected Vendors & Products
Tue, 28 Oct 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:projectworlds:expense_management_system:1.0:*:*:*:*:*:*:* |
Mon, 27 Oct 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Projectworlds
Projectworlds expense Management System |
|
| Vendors & Products |
Projectworlds
Projectworlds expense Management System |
Mon, 27 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Oct 2025 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in projectworlds Expense Management System 1.0. Affected is an unknown function of the file /public/admin/expense_categories/create of the component Expense Categories Page. Such manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. | |
| Title | projectworlds Expense Management System Expense Categories create cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-27T06:02:08.498Z
Updated: 2025-10-27T15:13:52.169Z
Reserved: 2025-10-25T17:00:38.431Z
Link: CVE-2025-12231
Updated: 2025-10-27T15:13:38.766Z
Status : Analyzed
Published: 2025-10-27T06:15:39.013
Modified: 2025-10-28T02:17:22.280
Link: CVE-2025-12231
No data.