Lucene search

K

Travel Management System Project Security Vulnerabilities

cve
cve

CVE-2021-25208

Arbitrary file upload vulnerability in SourceCodester Travel Management System v 1.0 allows attackers to execute arbitrary code via the file upload to updatepackage.php.

9.8CVSS

9.7AI Score

0.008EPSS

2021-07-23 02:15 PM
49
8
cve
cve

CVE-2021-25213

SQL injection vulnerability in SourceCodester Travel Management System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the catid parameter to subcat.php.

9.8CVSS

9.8AI Score

0.002EPSS

2021-07-22 08:15 PM
59
4