Code-Projects Tourism Management System vulnerabilities

3 known vulnerabilities affecting code-projects/tourism_management_system.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2025-4889MEDIUMCVSS 4.8v1.02025-05-18
CVE-2025-4889 [MEDIUM] CWE-119 CVE-2025-4889: A vulnerability has been found in code-projects Tourism Management System 1.0 and classified as crit A vulnerability has been found in code-projects Tourism Management System 1.0 and classified as critical. This vulnerability affects the function AddUser of the component User Registration. The manipulation of the argument username/password leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to th
cvelistv5nvd
CVE-2025-4890MEDIUMCVSS 4.8v1.02025-05-18
CVE-2025-4890 [MEDIUM] CWE-119 CVE-2025-4890: A vulnerability was found in code-projects Tourism Management System 1.0 and classified as critical. A vulnerability was found in code-projects Tourism Management System 1.0 and classified as critical. This issue affects the function LoginUser of the component Login User. The manipulation of the argument username/password leads to stack-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be
cvelistv5nvd
CVE-2025-0538MEDIUMCVSS 5.3v1.02025-01-17
CVE-2025-0538 [MEDIUM] CWE-79 CVE-2025-0538: A vulnerability, which was classified as problematic, was found in code-projects Tourism Management A vulnerability, which was classified as problematic, was found in code-projects Tourism Management System 1.0. Affected is an unknown function of the file /admin/manage-pages.php. The manipulation of the argument pgedetails leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may
cvelistv5nvd