Описание
An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:jayesh:hotel_management_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 55%
0.00322
Низкий
9.1 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-284
Связанные уязвимости
CVSS3: 9.1
github
больше 1 года назад
An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.
EPSS
Процентиль: 55%
0.00322
Низкий
9.1 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-284