Online Railway Reservation System Project
Online Railway Reservation System Project Online Railway Reservation System: vulnerabilidades y CVE
Online Railway Reservation System Project Online Railway Reservation System tiene 16 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE16
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-7912 | Media (6.9) | 0.80% | — | 18 ago 2024 | A vulnerability was found in CodeAstro Online Railway Reservation System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/assets/. The manipulation leads to exposure… |
| CVE-2024-7910 | Media (5.1) | 0.64% | — | 18 ago 2024 | A vulnerability was found in CodeAstro Online Railway Reservation System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/emp-profile-avatar.php of the component… |
| CVE-2024-7815 | Media (5.1) | 1.2% | — | 15 ago 2024 | A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/admin-update-employee.php of… |
| CVE-2024-7814 | Media (5.1) | 0.42% | — | 15 ago 2024 | A vulnerability, which was classified as problematic, was found in CodeAstro Online Railway Reservation System 1.0. Affected is an unknown function of the file /admin/admin-add-employee.php of the component Add Employee… |
| CVE-2024-0782 | Media (6.1) | 0.57% | — | 22 ene 2024 | A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. This vulnerability affects unknown code of the file pass-profile.php. The manipulation of the argument… |
| CVE-2022-33061 | Alta (7.2) | 0.78% | — | 29 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_service. |
| CVE-2022-33060 | Alta (7.2) | 0.96% | — | 29 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_schedule. |
| CVE-2022-33059 | Alta (7.2) | 0.96% | — | 29 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_train. |
| CVE-2022-33058 | Alta (7.2) | 0.96% | — | 29 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_message. |
| CVE-2022-33057 | Alta (7.2) | 0.96% | — | 29 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_reservation. |
| CVE-2022-33042 | Alta (7.2) | 0.96% | — | 29 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/inquiries/view_details.php. |
| CVE-2022-33056 | Alta (7.2) | 0.96% | — | 21 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/schedules/manage_schedule.php. |
| CVE-2022-33055 | Alta (7.2) | 0.96% | — | 21 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/trains/manage_train.php. |
| CVE-2022-33049 | Alta (7.2) | 0.96% | — | 21 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/?page=user/manage_user. |
| CVE-2022-33048 | Alta (7.2) | 0.96% | — | 21 jun 2022 | Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /orrs/admin/reservations/view_details.php. |
| CVE-2021-46308 | Crítica (9.8) | 1.6% | — | 21 ene 2022 | An SQL Injection vulnerability exists in Sourcecodester Online Railway Reservation Sysytem 1.0 via the sid parameter. |