VANSH Dhawan

4 exploits Active since Jun 2025
CVE-2025-6131 WRITEUP LOW WRITEUP
Codeastro Food Ordering System - Code Injection
A vulnerability, which was classified as problematic, was found in CodeAstro Food Ordering System 1.0. Affected is an unknown function of the file /admin/store/edit/ of the component POST Request Parameter Handler. The manipulation of the argument Restaurant Name/Address leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS 2.4
CVE-2025-6452 WRITEUP LOW WRITEUP
Codeastro Patient Record Management System - Code Injection
A vulnerability was found in CodeAstro Patient Record Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the component Generate New Report Page. The manipulation of the argument Patient Name/Name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVSS 2.4
CVE-2025-6664 WRITEUP MEDIUM WRITEUP
Codeastro Patient Record Management System - Missing Authorization
A vulnerability, which was classified as problematic, was found in CodeAstro Patient Record Management System 1.0. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS 4.3
CVE-2025-7133 WRITEUP MEDIUM WRITEUP
Codeastro Online Movie Ticket Booking System - Missing Authorization
A vulnerability classified as problematic has been found in CodeAstro Online Movie Ticket Booking System 1.0. This affects an unknown part. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS 4.3