Unrated severityNVD Advisory· Published Aug 6, 2024· Updated Aug 6, 2024
itsourcecode Airline Reservation System admin_class.php save_settings unrestricted upload
CVE-2024-7500
Description
A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been rated as critical. Affected by this issue is the function save_settings of the file admin/admin_class.php. The manipulation of the argument img leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-273626 is the identifier assigned to this vulnerability.
Affected products
2- Range: = 1.0
- itsourcecode/Airline Reservation Systemv5Range: 1.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/DeepMountains/zzz/blob/main/CVE1-5.mdmitreexploit
- vuldb.commitrethird-party-advisory
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
News mentions
0No linked articles in our index yet.