cbcvebase.

Code-Projects Tourism Management System vulnerabilities

3 known vulnerabilities affecting code-projects/tourism_management_system.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2025-4890P3HIGHCVSS 7.8v1.02025-05-18
CVE-2025-4890 [HIGH] CWE-119 CVE-2025-4890: A vulnerability was found in code-projects Tourism Management System 1.0 and classified as critical. A vulnerability was found in code-projects Tourism Management System 1.0 and classified as critical. This issue affects the function LoginUser of the component Login User. The manipulation of the argument username/password leads to stack-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be us
nvd
CVE-2025-4889P3HIGHCVSS 7.8v1.02025-05-18
CVE-2025-4889 [HIGH] CWE-119 CVE-2025-4889: A vulnerability has been found in code-projects Tourism Management System 1.0 and classified as crit A vulnerability has been found in code-projects Tourism Management System 1.0 and classified as critical. This vulnerability affects the function AddUser of the component User Registration. The manipulation of the argument username/password leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the
nvd
CVE-2025-0538P4MEDIUMCVSS 4.8v1.02025-01-17
CVE-2025-0538 [MEDIUM] CWE-79 CVE-2025-0538: A vulnerability, which was classified as problematic, was found in code-projects Tourism Management A vulnerability, which was classified as problematic, was found in code-projects Tourism Management System 1.0. Affected is an unknown function of the file /admin/manage-pages.php. The manipulation of the argument pgedetails leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may
nvd
Code-Projects Tourism Management System vulnerabilities | cvebase