Directory traversal vulnerability in Online Catering Reservation System 1.0 exists due to lack of validation in index.php.
References
Link | Resource |
---|---|
https://github.com/dumpling-soup/Online-Catering-Reservation-DT/blob/main/README.md | Exploit Third Party Advisory |
https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-38758 | Broken Link |
https://github.com/nu11secur1ty/CVE-mitre/tree/main/Online-Catering-Reservation-DT-Food-Catering | Exploit Third Party Advisory |
https://attackerkb.com/topics/XuEb81tsid/online-catering-reservation-dt-food-catering-by-oretnom23-v1-0-sql-injection---login | Third Party Advisory |
https://github.com/nu11secur1ty/CVE-mitre/blob/main/CVE-2021-38758/README.MD | Broken Link |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-08-16 07:15
Updated : 2021-09-21 12:20
NVD link : CVE-2021-38758
Mitre link : CVE-2021-38758
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
online_catering_reservation_system_project
- online_catering_reservation_system