CVE-2023-48685
21.12.2023, 21:15
Railway Reservation System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.The 'psd' parameter of the login.php resourcedoes not validate the characters received and theyare sent unfiltered to the database.
| Vendor | Product | Version |
|---|---|---|
| projectworlds | railway_reservation_system | 1.0 |
𝑥
= Vulnerable software versions