216.73.216.226

CVE-2024-42775

· Published 22/08/2024 17:15 · Modified 23/08/2024 16:18

Labels: CVE-2024-42775 2024-08-22CVE-2024-42775CWE-284[email protected]

Essential information

Published
22/08/2024 17:15
Modified
23/08/2024 16:18
Author
Creator
CVSS
9.1 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CVSS metrics

Description

An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References