CVE-2024-42775

An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.
Configurations

No configuration.

History

23 Aug 2024, 16:18

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad de control de acceso incorrecto en /admin/add_room_controller.php en Kashipara Hotel Management System v1.0, que permite a un atacante no autenticado agregar entradas válidas de habitaciones de hotel en la sección de administrador a través del acceso URL directo.

22 Aug 2024, 20:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-284

22 Aug 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-22 17:15

Updated : 2024-08-23 16:18


NVD link : CVE-2024-42775

Mitre link : CVE-2024-42775

CVE.ORG link : CVE-2024-42775


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control