cbcvebase.

Code-Projects Online Lot Reservation System vulnerabilities

4 known vulnerabilities affecting code-projects/online_lot_reservation_system.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2026-7131P3HIGHCVSS 7.3v1.02026-04-27
CVE-2026-7131 [HIGH] CWE-74 CVE-2026-7131: A vulnerability has been found in code-projects Online Lot Reservation System up to 1.0. The impacte A vulnerability has been found in code-projects Online Lot Reservation System up to 1.0. The impacted element is an unknown function of the file /loginuser.php. The manipulation of the argument email/password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-7132P4MEDIUMCVSS 5.3v1.02026-04-27
CVE-2026-7132 [MEDIUM] CWE-22 CVE-2026-7132: A vulnerability was found in code-projects Online Lot Reservation System up to 1.0. This affects the A vulnerability was found in code-projects Online Lot Reservation System up to 1.0. This affects the function readfile of the file /download.php. The manipulation of the argument File results in path traversal. It is possible to launch the attack remotely. The exploit has been made public and could be used.
nvd
CVE-2026-7134P4MEDIUMCVSS 4.7v1.02026-04-27
CVE-2026-7134 [MEDIUM] CWE-284 CVE-2026-7134: A vulnerability was identified in code-projects Online Lot Reservation System 1.0. Affected is an un A vulnerability was identified in code-projects Online Lot Reservation System 1.0. Affected is an unknown function of the file /edithousepic.php. Such manipulation of the argument image leads to unrestricted upload. The attack can be launched remotely. The exploit is publicly available and might be used.
nvd
CVE-2026-7133P4MEDIUMCVSS 4.7v1.02026-04-27
CVE-2026-7133 [MEDIUM] CWE-284 CVE-2026-7133: A vulnerability was determined in code-projects Online Lot Reservation System 1.0. This impacts an u A vulnerability was determined in code-projects Online Lot Reservation System 1.0. This impacts an unknown function of the file /activity.php. This manipulation of the argument directory causes unrestricted upload. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
nvd
Code-Projects Online Lot Reservation System vulnerabilities | cvebase