Show filters
17 Total Results
Displaying 1-10 of 17
Sort by:
Attacker Value
Unknown
CVE-2024-12186
Disclosure Date: December 05, 2024 (last updated December 21, 2024)
A vulnerability was found in code-projects Hotel Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file hotelnew.c of the component Available Room Handler. The manipulation of the argument admin_entry leads to stack-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2024-12185
Disclosure Date: December 05, 2024 (last updated December 21, 2024)
A vulnerability has been found in code-projects Hotel Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the component Administrator Login Password Handler. The manipulation of the argument Str2 leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2024-25318
Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Code-projects Hotel Managment System 1.0 allows SQL Injection via the 'pid' parameter in Hotel/admin/print.php?pid=2.
0
Attacker Value
Unknown
CVE-2024-25316
Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Code-projects Hotel Managment System 1.0 allows SQL Injection via the 'eid' parameter in Hotel/admin/usersettingdel.php?eid=2.
0
Attacker Value
Unknown
CVE-2024-25315
Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Code-projects Hotel Managment System 1.0, allows SQL Injection via the 'rid' parameter in Hotel/admin/roombook.php?rid=2.
0
Attacker Value
Unknown
CVE-2024-25314
Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Code-projects Hotel Managment System 1.0, allows SQL Injection via the 'sid' parameter in Hotel/admin/show.php?sid=2.
0
Attacker Value
Unknown
CVE-2023-49272
Disclosure Date: December 20, 2023 (last updated February 02, 2024)
Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'children' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.
0
Attacker Value
Unknown
CVE-2023-49271
Disclosure Date: December 20, 2023 (last updated December 27, 2023)
Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check_out_date' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.
0
Attacker Value
Unknown
CVE-2023-49270
Disclosure Date: December 20, 2023 (last updated December 27, 2023)
Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check_in_date' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.
0
Attacker Value
Unknown
CVE-2023-49269
Disclosure Date: December 20, 2023 (last updated December 28, 2023)
Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'adults' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.
0