Home/Product/car rental management system project car rental management system
Product

car rental management system project car rental management system

16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-32019
all versions
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action
9.8CRITICAL
CVE-2022-32028
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/manage_user.php?id=.
7.2HIGH
CVE-2022-32027
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/index.php?page=manage_car
7.2HIGH
CVE-2022-32026
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/manage_booking.php?id=.
7.2HIGH
CVE-2022-32025
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/view_car.php?id=.
7.2HIGH
CVE-2022-32024
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via car-rental-management-system/booking.php?car_id=.
7.2HIGH
CVE-2022-32022
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via /ip/car-rental-management-system/admin/ajax.php?action=login.
7.2HIGH
CVE-2022-32021
all versions
Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/manage_movement.php?id=.
7.2HIGH
CVE-2022-32020
all versions
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via ip/car-rental-management-system/admin/ajax.php?act
9.8CRITICAL
CVE-2022-29318
all versions
An arbitrary file upload vulnerability in the New Entry module of Car Rental Management System v1.0 allows attackers to execute ar
7.2HIGH
CVE-2021-46005
all versions
Sourcecodester Car Rental Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via vehicalorcview parameter.
5.4MEDIUM
CVE-2021-24519
< 1.1.10
The VikRentCar Car Rental Management System WordPress plugin before 1.1.10 does not sanitise the 'Text Next to Icon' field when ad
4.8MEDIUM
CVE-2020-29227
all versions
An issue was discovered in Car Rental Management System 1.0. An unauthenticated user can perform a file inclusion attack against t
9.8CRITICAL
CVE-2020-29287
all versions
An SQL injection vulnerability was discovered in Car Rental Management System v1.0 can be exploited via the id parameter in view_c
9.8CRITICAL
CVE-2020-27956
all versions
An Arbitrary File Upload in the Upload Image component in SourceCodester Car Rental Management System 1.0 allows the user to condu
9.8CRITICAL
CVE-2020-23832
all versions
A Persistent Cross-Site Scripting (XSS) vulnerability in message_admin.php in Projectworlds Car Rental Management System v1.0 allo
6.1MEDIUM
threatengine.sh