Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Online Tour and Travel Management System — Vulnerabilities & Security Advisories 20

All 20 CVE vulnerabilities found in Online Tour and Travel Management System, with AI-generated Chinese analysis, references, and POCs.

This document provides an aggregated view of security vulnerabilities, weaknesses, and associated tags for the Online Tour and Travel Management System product. The page collects a comprehensive record of disclosed vulnerabilities spanning from the system's initial release through the most recent updates. This collection encompasses critical flaws such as cross-site scripting, injection attacks, broken access control, and security misconfigurations that have been reported by vendors or security researchers over the years. By consolidating these findings, the page offers a unified perspective on the historical security posture of the platform. Visitors can utilize this resource to track advisories issued by various vendors regarding specific versions of the software. It also serves as a reference point for understanding the prevalence and impact of specific weakness classes within the travel management domain. Additionally, users can look up the complete vulnerability history of the product to assess risk levels and prioritize remediation efforts based on past incidents. This structured aggregation helps security professionals, auditors, and developers evaluate the long-term stability and safety of the Online Tour and Travel Management System without needing to search multiple disparate sources for individual vulnerability reports.

Vendor: itsourcecode

CVE IDTitleCVSSSeverityPublished
CVE-2025-9426 itsourcecode Online Tour and Travel Management System package.php sql injection CWE-89 7.3 High2025-08-25
CVE-2025-9425 itsourcecode Online Tour and Travel Management System enquiry.php sql injection CWE-89 7.3 High2025-08-25
CVE-2025-9155 itsourcecode Online Tour and Travel Management System forget_password.php sql injection CWE-89 7.3 High2025-08-19
CVE-2025-9154 itsourcecode Online Tour and Travel Management System page-login.php sql injection CWE-89 7.3 High2025-08-19
CVE-2025-9153 itsourcecode Online Tour and Travel Management System travellers.php unrestricted upload CWE-434 6.3 Medium2025-08-19
CVE-2025-9010 itsourcecode Online Tour and Travel Management System booking_report.php sql injection CWE-89 7.3 High2025-08-15
CVE-2025-9009 itsourcecode Online Tour and Travel Management System email_setup.php sql injection CWE-89 7.3 High2025-08-15
CVE-2025-9008 itsourcecode Online Tour and Travel Management System sms_setting.php sql injection CWE-89 7.3 High2025-08-15
CVE-2025-8993 itsourcecode Online Tour and Travel Management System expense_report.php sql injection CWE-89 7.3 High2025-08-15
CVE-2025-8984 itsourcecode Online Tour and Travel Management System expense_category.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8983 itsourcecode Online Tour and Travel Management System expense.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8982 itsourcecode Online Tour and Travel Management System currency.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8981 itsourcecode Online Tour and Travel Management System payment.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8972 itsourcecode Online Tour and Travel Management System page-login.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8971 itsourcecode Online Tour and Travel Management System travellers.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8970 itsourcecode Online Tour and Travel Management System booking.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8969 itsourcecode Online Tour and Travel Management System approve_user.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8968 itsourcecode Online Tour and Travel Management System disapprove_user.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8967 itsourcecode Online Tour and Travel Management System packages.php sql injection CWE-89 7.3 High2025-08-14
CVE-2025-8966 itsourcecode Online Tour and Travel Management System tax.php sql injection CWE-89 7.3 High2025-08-14

All 20 known CVE vulnerabilities affecting Online Tour and Travel Management System with full Chinese analysis, references, and POCs where available.