Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Online Tours & Travels Management System — Vulnerabilities & Security Advisories 24

All 24 CVE vulnerabilities found in Online Tours & Travels Management System, with AI-generated Chinese analysis, references, and POCs.

This page catalogs known vulnerabilities affecting the Online Tours & Travels Management System, an enterprise software solution designed to facilitate the booking and management of travel services, categorized under web application security weaknesses. The collection includes a comprehensive range of security flaws identified within the product, covering common categories such as SQL injection, cross-site scripting, broken authentication, and insecure direct object references. These entries span vulnerability disclosures from the initial release of the system through the most recent updates, ensuring a historical perspective on the product's security posture over time. By utilizing this aggregated view, security professionals and system administrators can efficiently track advisory releases from various vendors and developers who have patched or acknowledged specific issues in this ecosystem. Users can gain deeper insights into recurring weakness classes that frequently impact tour management platforms, allowing for better risk assessment and prioritization of mitigation efforts. Furthermore, the page serves as a reference point to look up the complete vulnerability history of the Online Tours & Travels Management System, helping organizations understand the trajectory of security fixes applied to their installations. This resource is particularly useful for auditing compliance, evaluating the maturity of security patching processes, and identifying potential gaps in current defense strategies against targeted attacks on travel-related software. It consolidates disparate reports into a single, accessible location to support informed decision-making regarding system upgrades and hardening measures.

Vendor: SourceCodester

CVE IDTitleCVSSSeverityPublished
CVE-2024-2168 SourceCodester Online Tours & Travels Management System HTTP POST Request expense_category.php sql injection CWE-89 4.7 Medium2024-03-04
CVE-2024-0884 SourceCodester Online Tours & Travels Management System payment.php exec sql injection CWE-89 4.7 Medium2024-01-25
CVE-2024-0883 SourceCodester Online Tours & Travels Management System pay.php prepare sql injection CWE-89 6.3 Medium2024-01-25
CVE-2024-0735 SourceCodester Online Tours & Travels Management System expense.php exec sql injection CWE-89 6.3 Medium2024-01-19
CVE-2023-6765 SourceCodester Online Tours & Travels Management System email_setup.php prepare sql injection CWE-89 5.5 Medium2023-12-13
CVE-2023-4866 SourceCodester Online Tours & Travels Management System booking.php exec sql injection CWE-89 6.3 Medium2023-09-09
CVE-2023-2619 SourceCodester Online Tours & Travels Management System disapprove_delete.php exec sql injection CWE-89 6.3 Medium2023-05-10
CVE-2023-1590 SourceCodester Online Tours & Travels Management System currency.php exec sql injection CWE-89 6.3 Medium2023-03-23
CVE-2023-1589 SourceCodester Online Tours & Travels Management System approve_delete.php exec sql injection CWE-89 6.3 Medium2023-03-23
CVE-2023-1396 SourceCodester Online Tours & Travels Management System traveller_details.php cross site scripting CWE-79 3.5 Low2023-03-14
CVE-2023-1391 SourceCodester Online Tours & Travels Management System ab.php unrestricted upload CWE-434 4.7 Medium2023-03-14
CVE-2023-0570 SourceCodester Online Tours & Travels Management System payment_operation.php sql injection CWE-89 6.3 Medium2023-01-29
CVE-2023-0561 SourceCodester Online Tours & Travels Management System s.php sql injection CWE-89 6.3 Medium2023-01-28
CVE-2023-0560 SourceCodester Online Tours & Travels Management System practice_pdf.php sql injection CWE-89 4.7 Medium2023-01-28
CVE-2023-0534 SourceCodester Online Tours & Travels Management System expense_report.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0533 SourceCodester Online Tours & Travels Management System expense_report.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0532 SourceCodester Online Tours & Travels Management System disapprove_user.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0531 SourceCodester Online Tours & Travels Management System booking_report.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0530 SourceCodester Online Tours & Travels Management System approve_user.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0529 SourceCodester Online Tours & Travels Management System add_payment.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0528 SourceCodester Online Tours & Travels Management System abc.php sql injection CWE-89 4.7 Medium2023-01-27
CVE-2023-0516 SourceCodester Online Tours & Travels Management System Parameter forget_password.php sql injection CWE-89 5.5 Medium2023-01-26
CVE-2023-0515 SourceCodester Online Tours & Travels Management System Parameter forget_password.php sql injection CWE-89 5.5 Medium2023-01-26
CVE-2023-0324 SourceCodester Online Tours & Travels Management System page-login.php sql injection CWE-89 7.3 High2023-01-16

All 24 known CVE vulnerabilities affecting Online Tours & Travels Management System with full Chinese analysis, references, and POCs where available.