Web1 vuln-feed

Finding #73

Inventory item apache-test 2.4.37 (software, apache)
TitleProjectSend ProjectSend: ProjectSend Improper Authentication Vulnerability
Matchkeyword / confidence low
Statusnew
First seen2026-06-11T07:35:12Z
Last updated2026-06-11T07:35:12Z
Source advisoryProjectSend ProjectSend: ProjectSend Improper Authentication Vulnerability
ProjectSend contains an improper authentication vulnerability that allows a remote, unauthenticated attacker to enable unauthorized modification of the application's configuration via crafted HTTP requests to options.php. Successful exploitation allows attackers to create accounts, upload webshells, and embed malicious JavaScript.

Update status