cbcvebase.
CVE-2020-28136
published 2020-11-17

CVE-2020-28136: An Arbitrary File Upload is discovered in SourceCodester Tourism Management System 1.0 allows the user to conduct remote code execution via…

high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
An Arbitrary File Upload is discovered in SourceCodester Tourism Management System 1.0 allows the user to conduct remote code execution via admin/create-package.php vulnerable page.

Affected

1 ranges
VendorProductVersion rangeFixed in
phpgurukultourism_management_system