📦 Car Rental Management System

by Car Rental Management System Project

🔍 What is Car Rental Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-32019

CRITICAL CVSS 9.8 Jun 2, 2022

Car Rental Management System v1.0 contains an unrestricted file upload vulnerability in the admin/ajax.php endpoint that allows remote attackers to execute arbitrary code. This affects all deployments...

CVE-2022-32020

CRITICAL CVSS 9.8 Jun 2, 2022

Car Rental Management System v1.0 contains a critical vulnerability in the admin/ajax.php endpoint that allows remote attackers to execute arbitrary code via the save_settings action. This affects all...

CVE-2020-29227

CRITICAL CVSS 9.8 Dec 14, 2020

CVE-2020-29227 is an unauthenticated local file inclusion vulnerability in Car Rental Management System 1.0 that allows attackers to include arbitrary files via the 'page' parameter in /index.php, pot...

CVE-2020-29287

CRITICAL CVSS 9.8 Dec 2, 2020

This SQL injection vulnerability in Car Rental Management System v1.0 allows attackers to execute arbitrary SQL commands via the id parameter in view_car.php or car_id parameter in booking.php. This a...

CVE-2020-27956

CRITICAL CVSS 9.8 Oct 28, 2020

This vulnerability allows attackers to upload malicious PHP files through the car rental management system's image upload feature, leading to remote code execution. Any organization using SourceCodest...

CVE-2022-32022

HIGH CVSS 7.2 Jun 2, 2022

Car Rental Management System v1.0 contains a SQL injection vulnerability in the admin login endpoint that allows attackers to execute arbitrary SQL commands. This could lead to authentication bypass, ...

CVE-2022-32025

HIGH CVSS 7.2 Jun 2, 2022

Car Rental Management System v1.0 contains a SQL injection vulnerability in the admin view_car.php endpoint that allows attackers to execute arbitrary SQL commands via the id parameter. This affects a...

CVE-2022-32027

HIGH CVSS 7.2 Jun 2, 2022

Car Rental Management System v1.0 contains a SQL injection vulnerability in the admin panel's car management page. Attackers can exploit this by manipulating the 'id' parameter to execute arbitrary SQ...

CVE-2022-29318

HIGH CVSS 7.2 May 11, 2022

This vulnerability allows attackers to upload malicious PHP files through the New Entry module in Car Rental Management System v1.0, leading to remote code execution. Any organization using this speci...