


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was identified in projectworlds Car Rental Project 1.0. Affected by this vulnerability is an unknown functionality of the file /book_car.php of …
Published:
5 april 2026 om 22:00:00
Alert date:
6 april 2026 om 09:01:21
Source:
nvd.nist.gov
Web Technologies
A SQL injection vulnerability was identified in projectworlds Car Rental Project 1.0. The vulnerability affects the /book_car.php file in the Parameter Handler component. The attack vector involves manipulation of the 'fname' argument parameter. The vulnerability can be exploited remotely by attackers. Public exploits are available for this vulnerability, increasing the risk of active exploitation. The vulnerability represents a significant security risk due to the potential for database compromise.
Technical details
Mitigation steps:
Affected products:
projectworlds Car Rental Project
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-5634
https://github.com/eqiya17/collection-of-vulnerabilities/issues/12
https://vuldb.com/submit/785863
https://vuldb.com/vuln/355422
https://vuldb.com/vuln/355422/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
