High severity8.8NVD Advisory· Published Oct 24, 2019· Updated Jun 17, 2026
CVE-2019-18417
CVE-2019-18417
Description
Sourcecodester Restaurant Management System 1.0 allows an authenticated attacker to upload arbitrary files that can result in code execution. The issue occurs because the application fails to adequately sanitize user-supplied input, e.g., "add a new food" allows .php files.
Affected products
3cpe:2.3:a:sourcecodester:restaurant_management_system:1.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sourcecodester:restaurant_management_system:1.0:*:*:*:*:*:*:*
- (no CPE)range: 1.0
- Sourcecodester/Restaurant Management Systemdescription
Patches
Vulnerability mechanics
References
1- www.sevenlayers.com/index.php/265-restaurant-management-system-1-0-arbitrary-file-uploadnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.