PT-2022-11416 · Sourcecodester · Sourcecodester South Gate Inn Online Reservation System

Janobe

·

Published

2022-01-24

·

Updated

2022-01-28

·

CVE-2021-41471

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Sourcecodester South Gate Inn Online Reservation System version v1
Description The issue allows attackers to execute arbitrary SQL commands via the email and Password parameters. This can be exploited by sending malicious input to the affected system, potentially leading to unauthorized data access or modification.
Recommendations For Sourcecodester South Gate Inn Online Reservation System version v1, consider restricting input for the email and Password parameters to prevent malicious SQL commands from being executed. As a temporary workaround, restrict access to sensitive data until a proper fix is applied. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-41471

Affected Products

Sourcecodester South Gate Inn Online Reservation System