在 PHP 版 Hotel and Tourism Reservation 1.0(code-projects)中检测到一个漏洞。该漏洞位于组件“数据库备份处理器”中的 文件的一个未知函数。通过操控该函数可导致信息泄露。此攻击可远程发起,且利用代码(exp)现已公开,可被用于攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| code-projects | Hotel and Tourism Reservation in PHP | 1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Hotel and Tourism Reservation in PHP | 1.0 |
cpe:2.3:a:code-projects:hotel_and_tourism_reservation_in_php:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86180 | 7.3 HIGH | code-projects Task Management System In PHP Login index.php sql injection |
| CVE-2026-86168 | 7.3 HIGH | code-projects Content Management System login.php sql injection |
| CVE-2026-86179 | 5.3 MEDIUM | code-projects Daily Expense Manager Database Backup exp_ak.sql information disclosure |
| CVE-2026-86216 | 4.3 MEDIUM | code-projects Hotel and Tourism Reservation in PHP details.php cross site scripting |
| CVE-2026-86181 | 3.5 LOW | code-projects Task Management System User Profile Update UpdateUserProfile.php cross site |
No comments yet