Vulnerability CVE-2023-31939


Published: 2023-08-17

Description:
SQL injection vulnerability found in Online Travel Agency System v.1.0 allows a remote attacker to execute arbitrary code via the costomer_id parameter at customer_edit.php.

 References:
https://github.com/DiliLearngent/BugReport/blob/main/php/Online-Travel-Agency-System/bug4-SQL-Injection-costomer_id.md

Copyright 2026, cxsecurity.com

 

Back to Top