Projectworlds Exploit

MEDIUM (6.3) No Patch (21 days)

Threat Intelligence

Low Risk
EPSS Score: 0.04% chance of exploitation (percentile: 10%)
🔍 Detection Tools: None available in major open-source tools
⚔️ Exploit Availability: No public exploits found

How we test →

What is it?

Projectworlds is an unknown web-based application used for managing digital portfolios. This vulnerability allows attackers to pass malicious payloads up to 1.0, resulting in unrestricted upload of files. The attack can be executed remotely and has a low complexity level, making it accessible to script kiddies.

Am I affected?

You're affected if you use A security flaw. Affected versions: 1.0 If you don't recognise this software, you're probably not affected.

Affected Products

unknown / projectworlds

How to fix

Immediate mitigations:
- Restrict network access to your projectworlds instance (firewall it from the public internet)
- Audit admin account activity for suspicious access patterns
- Monitor for unauthorized token creation

Concrete steps:
- Contact the vendor directly for a patched version, as no public patch link is available.
- Follow up with the vendor's support team for further assistance.