Unrated severityNVD Advisory· Published Jan 27, 2023· Updated Mar 28, 2025
SourceCodester Online Tours & Travels Management System disapprove_user.php sql injection
CVE-2023-0532
Description
A vulnerability classified as critical was found in SourceCodester Online Tours & Travels Management System 1.0. Affected by this vulnerability is an unknown functionality of the file admin/disapprove_user.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-219601 was assigned to this vulnerability.
Affected products
2- Range: =1.0
- Range: 1.0
Patches
Vulnerability mechanics
References
3- github.com/linmoren/online-tours-travels-management-system/blob/main/admin_disapprove_user_id.mdmitrebroken-linkexploit
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
News mentions
0No linked articles in our index yet.