A security flaw has been discovered in projectworlds Advanced Library Management System 1.0. This issue affects some unknown processing of the file /book_search.php. Performing manipulation of the argument book_pub/book_title results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to the public and may be exploited.
| Software | From | Fixed in |
|---|---|---|
| projectworlds / advanced_library_management_system | 1.0 | 1.0.x |