Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2025-0339
Disclosure Date: January 09, 2025 (last updated January 09, 2025)
A vulnerability classified as problematic has been found in code-projects Online Bike Rental 1.0. Affected is an unknown function of the file /vehical-details.php of the component HTTP GET Request Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely.
0
Attacker Value
Unknown
CVE-2025-0335
Disclosure Date: January 09, 2025 (last updated January 09, 2025)
A vulnerability was found in code-projects Online Bike Rental System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the component Change Image Handler. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other endpoints might be affected as well.
0
Attacker Value
Unknown
CVE-2023-5585
Disclosure Date: October 15, 2023 (last updated October 19, 2023)
A vulnerability was found in SourceCodester Online Motorcycle Rental System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/?page=bike of the component Bike List. The manipulation of the argument Model with the input "><script>confirm (document.cookie)</script> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-242170 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2021-44249
Disclosure Date: January 28, 2022 (last updated February 23, 2025)
Online Motorcycle (Bike) Rental System 1.0 is vulnerable to a Blind Time-Based SQL Injection attack within the login portal. This can lead attackers to remotely dump MySQL database credentials.
0
Attacker Value
Unknown
CVE-2020-24195
Disclosure Date: September 09, 2020 (last updated February 22, 2025)
An Arbitrary File Upload in the Upload Image component in Sourcecodester Online Bike Rental v1.0 allows authenticated administrator to conduct remote code execution.
0
Attacker Value
Unknown
CVE-2020-24196
Disclosure Date: August 27, 2020 (last updated February 22, 2025)
An Arbitrary File Upload in Vehicle Image Upload in Online Bike Rental v1.0 allows authenticated admin to conduct remote code execution.
0