Vendorsvaibhavverma9999hotel_management_systemall versions
Vulnerabilities

vaibhavverma9999 Hotel Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2024-42556
Hotel Management System commit 91caab8 was discovered to contain a SQL injection vulnerability via the room_type parameter at admin_room_removed.php.
Published 2024-08-20 · Analyzed
9.8EPSS 0.007
CVE-2024-42558
Hotel Management System commit 91caab8 was discovered to contain a SQL injection vulnerability via the book_id parameter at admin_modify_room.php.
Published 2024-08-20 · Analyzed
9.8EPSS 0.007
CVE-2024-42554
Hotel Management System commit 91caab8 was discovered to contain a SQL injection vulnerability via the room_type parameter at admin_room_added.php.
Published 2024-08-20 · Analyzed
8.8EPSS 0.006
CVE-2024-42557
A Cross-Site Request Forgery (CSRF) in the component admin_modify_room.php of Hotel Management System commit 91caab8 allows attackers to escalate privileges.
Published 2024-08-20 · Analyzed
8.8EPSS 0.003
CVE-2024-42553
A Cross-Site Request Forgery (CSRF) in the component admin_room_added.php of Hotel Management System commit 91caab8 allows attackers to escalate privileges.
Published 2024-08-20 · Analyzed
8.8EPSS 0.003
CVE-2024-42555
A Cross-Site Request Forgery (CSRF) in the component admin_room_removed.php of Hotel Management System commit 91caab8 allows attackers to escalate privileges.
Published 2024-08-20 · Analyzed
8.8EPSS 0.003
CVE-2024-42552
Hotel Management System commit 91caab8 was discovered to contain a SQL injection vulnerability via the book_id parameter at admin_room_history.php.
Published 2024-08-20 · Analyzed
8.6EPSS 0.005