Directory traversal vulnerability in Online Catering Reservation System 1.0 exists due to lack of validation in index.php.
References
Link | Resource |
---|---|
https://attackerkb.com/topics/XuEb81tsid/online-catering-reservation-dt-food-catering-by-oretnom23-v1-0-sql-injection---login | Third Party Advisory |
https://github.com/dumpling-soup/Online-Catering-Reservation-DT/blob/main/README.md | Exploit Third Party Advisory |
https://github.com/nu11secur1ty/CVE-mitre/blob/main/CVE-2021-38758/README.MD | Broken Link |
https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-38758 | Broken Link |
https://github.com/nu11secur1ty/CVE-mitre/tree/main/Online-Catering-Reservation-DT-Food-Catering | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2021-08-16 14:15
Updated : 2021-09-21 19:20
NVD link : CVE-2021-38758
Mitre link : CVE-2021-38758
CVE.ORG link : CVE-2021-38758
JSON object : View
Products Affected
online_catering_reservation_system_project
- online_catering_reservation_system
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')