Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-42775

Опубликовано: 22 авг. 2024
Источник: nvd
CVSS3: 9.1
EPSS Низкий

Описание

An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jayesh:hotel_management_system:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 55%
0.00322
Низкий

9.1 Critical

CVSS3

Дефекты

NVD-CWE-noinfo
CWE-284

Связанные уязвимости

CVSS3: 9.1
github
больше 1 года назад

An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.

EPSS

Процентиль: 55%
0.00322
Низкий

9.1 Critical

CVSS3

Дефекты

NVD-CWE-noinfo
CWE-284