Vulnerabilities > Seat Reservation System Project > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-09-30 CVE-2020-25763 Unrestricted Upload of File with Dangerous Type vulnerability in Seat Reservation System Project Seat Reservation System 1.0
Seat Reservation System version 1.0 suffers from an Unauthenticated File Upload Vulnerability allowing Remote Attackers to gain Remote Code Execution (RCE) on the Hosting Webserver via uploading PHP files.
network
low complexity
seat-reservation-system-project CWE-434
critical
9.8
2020-09-30 CVE-2020-25762 SQL Injection vulnerability in Seat Reservation System Project Seat Reservation System 1.0
An issue was discovered in SourceCodester Seat Reservation System 1.0.
network
low complexity
seat-reservation-system-project CWE-89
critical
9.1