High severity8.8NVD Advisory· Published Oct 24, 2019· Updated Jun 17, 2026
CVE-2019-18414
CVE-2019-18414
Description
Sourcecodester Restaurant Management System 1.0 is affected by an admin/staff-exec.php Cross Site Request Forgery vulnerability due to a lack of CSRF protection. This could lead to an attacker tricking the administrator into executing arbitrary code or adding a staff entry via a crafted HTML page.
Affected products
3cpe:2.3:a:sourcecodester:restaurant_management_system:1.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sourcecodester:restaurant_management_system:1.0:*:*:*:*:*:*:*
- (no CPE)range: 1.0
- Sourcecodester/Restaurant Management Systemdescription
Patches
Vulnerability mechanics
References
1- www.sevenlayers.com/index.php/263-restaurant-management-system-csrfnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.