Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2021-44249

Disclosure Date: January 28, 2022 (last updated February 23, 2025)
Online Motorcycle (Bike) Rental System 1.0 is vulnerable to a Blind Time-Based SQL Injection attack within the login portal. This can lead attackers to remotely dump MySQL database credentials.
Attacker Value
Unknown

CVE-2020-24195

Disclosure Date: September 09, 2020 (last updated February 22, 2025)
An Arbitrary File Upload in the Upload Image component in Sourcecodester Online Bike Rental v1.0 allows authenticated administrator to conduct remote code execution.
Attacker Value
Unknown

CVE-2020-24196

Disclosure Date: August 27, 2020 (last updated February 22, 2025)
An Arbitrary File Upload in Vehicle Image Upload in Online Bike Rental v1.0 allows authenticated admin to conduct remote code execution.