Vulnerability CVE-2023-1561


Published: 2023-03-22

Description:
A vulnerability, which was classified as critical, was found in code-projects Simple Online Hotel Reservation System 1.0. Affected is an unknown function of the file add_room.php. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. VDB-223554 is the identifier assigned to this vulnerability.

Type:

CWE-434

(Unrestricted Upload of File with Dangerous Type)

 References:
https://github.com/sincere9/Bug-Hub/blob/main/SIMPLE%20ONLINE%20HOTEL%20RESERVATION%20SYSTEM/SIMPLE%20ONLINE%20HOTEL%20RESERVATION%20SYSTEM%20has%20a%20file%20upload%20(RCE)%20vulnerability.pdf
https://vuldb.com/?ctiid.223554
https://vuldb.com/?id.223554

Copyright 2024, cxsecurity.com

 

Back to Top