Vulnerabilities (CVE)

Filtered by vendor Codeastro Subscribe
Filtered by product Car Rental System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-3204 1 Codeastro 1 Car Rental System 2025-04-15 6.5 MEDIUM 6.3 MEDIUM
A vulnerability, which was classified as critical, has been found in CodeAstro Car Rental System 1.0. Affected by this issue is some unknown functionality of the file /returncar.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
CVE-2024-12981 1 Codeastro 1 Car Rental System 2025-03-05 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was found in CodeAstro Car Rental System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /bookingconfirm.php. The manipulation of the argument driver_id_from_dropdown leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.