JunyanYip

2 exploits Active since Jun 2023
CVE-2023-34486 WRITEUP MEDIUM WRITEUP
Online Hotel Management System - XSS
itsourcecode Online Hotel Management System Project In PHP v1.0.0 is vulnerable to Cross Site Scripting (XSS). Remote code execution can be achieved by entering malicious code in the date selection box.
CVSS 6.1
CVE-2023-34487 WRITEUP CRITICAL WRITEUP
Online Hotel Management System - SQL Injection
itsourcecode Online Hotel Management System Project In PHP v1.0.0 is vulnerable to SQL Injection. SQL injection points exist in the login password input box. This vulnerability can be exploited through time-based blind injection.
CVSS 9.8