Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-57487 | 1 Code-projects | 1 Online Car Rental System | 2025-04-03 | N/A | 6.5 MEDIUM |
In Code-Projects Online Car Rental System 1.0, the file upload feature does not validate file extensions or MIME types allowing an attacker to upload a PHP shell without any restrictions and execute commands on the server. | |||||
CVE-2024-57488 | 1 Code-projects | 1 Online Car Rental System | 2025-04-03 | N/A | 6.5 MEDIUM |
Code-Projects Online Car Rental System 1.0 is vulnerable to Cross Site Scripting (XSS) via the vehicalorcview parameter in /admin/edit-vehicle.php. |