VYPR
Vendor

Seat Reservation System Project

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2020-25763CriSep 30, 2020
    risk 0.64cvss 9.8epss 0.05

    Seat Reservation System version 1.0 suffers from an Unauthenticated File Upload Vulnerability allowing Remote Attackers to gain Remote Code Execution (RCE) on the Hosting Webserver via uploading PHP files.

  • CVE-2020-25762CriSep 30, 2020
    risk 0.63cvss 9.1epss 0.11

    An issue was discovered in SourceCodester Seat Reservation System 1.0. The file admin_class.php does not perform input validation on the username and password parameters. An attacker can send malicious input in the post request to /admin/ajax.php?action=login and bypass…

  • CVE-2020-36002HigFeb 17, 2021
    risk 0.49cvss 7.5epss 0.02

    Seat-Reservation-System 1.0 has a SQL injection vulnerability in index.php in the id parameter where attackers can obtain sensitive database information.