PT-2026-35447 · Code Projects · Online Hotel Reservation System

Z0Ng

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7134

CVSS v3.1

4.7

Medium

AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
A vulnerability was identified in code-projects Online Lot Reservation System 1.0. Affected is an unknown function of the file /edithousepic.php. Such manipulation of the argument image leads to unrestricted upload. The attack can be launched remotely. The exploit is publicly available and might be used.

Exploit

Fix

Unrestricted File Upload

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-7134

Affected Products

Online Hotel Reservation System