Medium severity4.7NVD Advisory· Published Mar 14, 2023· Updated Jun 17, 2026
CVE-2023-1391
CVE-2023-1391
Description
A vulnerability, which was classified as problematic, was found in SourceCodester Online Tours & Travels Management System 1.0. Affected is an unknown function of the file admin/ab.php. The manipulation of the argument img leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-222978 is the identifier assigned to this vulnerability.
Affected products
3- Range: 1.0
- cpe:2.3:a:online_tours_\&_travels_management_system_project:online_tours_\&_travels_management_system:1.0:*:*:*:*:*:*:*
- Range: 1.0
Patches
Vulnerability mechanics
References
3- vuldb.comnvdPermissions RequiredThird Party Advisory
- vuldb.comnvdPermissions RequiredThird Party Advisory
- blog.csdn.net/Dwayne_Wade/article/details/129526901nvdBroken Link
News mentions
0No linked articles in our index yet.