← Back

Railway Reservation System

railway_reservation_system

Vendor: Projectworlds • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Projectworlds
1Railway Reservation System
Nov 21, 2024
Dec 21, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'byname' parameter of the train.php resource does not validate the characters received and they are sent unfilt...Show more
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'byname' parameter of the train.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Railway Reservation System
Nov 21, 2024
Dec 21, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'from' parameter of the reservation.php resource does not validate the characters received and they are sent un...Show more
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'from' parameter of the reservation.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Railway Reservation System
Nov 21, 2024
Dec 21, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'psd' parameter of the login.php resource does not validate the characters received and they are sent unfiltere...Show more
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'psd' parameter of the login.php resource does not validate the characters received and they are sent unfiltered to the database. Show less