Metrics
Affected Vendors & Products
Fri, 15 Aug 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 15 Aug 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This affects an unknown part of the file /admin/expense_report.php. The manipulation of the argument from_date leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | itsourcecode Online Tour and Travel Management System expense_report.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-15T01:05:09.063Z
Updated: 2025-08-15T12:49:22.212Z
Reserved: 2025-08-13T17:01:40.588Z
Link: CVE-2025-8993

Updated: 2025-08-15T12:49:11.160Z

Status : Awaiting Analysis
Published: 2025-08-15T02:15:27.710
Modified: 2025-08-15T13:15:34.493
Link: CVE-2025-8993

No data.