Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of the loginAction.php resource does not validate the characters received and they are sent unfiltered to the database.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kashipara travel website 1.0 |