Vulnerability CVE-2023-31944


Published: 2023-08-17

Description:
SQL injection vulnerability found in Online Travel Agency System v.1.0 allows a remote attacker to execute arbitrary code via the emp_id parameter at employee_edit.php.

 References:
https://github.com/DiliLearngent/BugReport/blob/main/php/Online-Travel-Agency-System/bug3-SQL-Injection-emp_id2.md

Copyright 2026, cxsecurity.com

 

Back to Top