Vulnerability Description
A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown functionality of the file /admin/adminHome.php. This manipulation of the argument Info causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Projectworlds | Online Art Gallery Shop | 1.0 |
Related Weaknesses (CWE)
References
- https://github.com/hmKunlun/projectworldcve/issues/2ExploitIssue Tracking
- https://vuldb.com/?ctiid.349736Permissions RequiredVDB Entry
- https://vuldb.com/?id.349736Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.768058Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.768958Third Party AdvisoryVDB Entry
FAQ
What is CVE-2026-3758?
CVE-2026-3758 is a vulnerability with a CVSS score of 7.3 (HIGH). A weakness has been identified in projectworlds Online Art Gallery Shop 1.0. Affected by this issue is some unknown functionality of the file /admin/adminHome.php. This manipulation of the argument In...
How severe is CVE-2026-3758?
CVE-2026-3758 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-3758?
Check the references section above for vendor advisories and patch information. Affected products include: Projectworlds Online Art Gallery Shop.