A vulnerability was found in Projectworlds Life Insurance Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /insertNominee.php. The manipulation of the argument client_id/nominee_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
| Software | From | Fixed in |
|---|---|---|
| projectworlds / life_insurance_management_system | 1.0 | 1.0.x |