CVE-2022-32019
https://notcve.org/view.php?id=CVE-2022-32019
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action=save_car. Car Rental Management System versión v1.0, es vulnerable a una ejecución de código arbitrario por medio del archivo car-rental-management-system/admin/ajax.php?action=save_car • https://github.com/k0xx11/bug_report/blob/main/vendors/campcodes.com/car-rental-management-system/RCE-1.md • CWE-434: Unrestricted Upload of File with Dangerous Type •
CVE-2022-32020
https://notcve.org/view.php?id=CVE-2022-32020
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via ip/car-rental-management-system/admin/ajax.php?action=save_settings. Car Rental Management System versión v1.0, es vulnerable a una ejecución de código arbitrario por medio del archivo ip/car-rental-management-system/admin/ajax.php?action=save_settings • https://github.com/k0xx11/bug_report/blob/main/vendors/campcodes.com/car-rental-management-system/RCE-2.md •
CVE-2022-32021
https://notcve.org/view.php?id=CVE-2022-32021
Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/manage_movement.php?id=. Car Rental Management System versión v1.0, es vulnerable a una inyección SQL por medio del archivo /car-rental-management-system/admin/manage_movement.php?id= • https://github.com/k0xx11/bug_report/blob/main/vendors/campcodes.com/car-rental-management-system/SQLi-3.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2022-32022
https://notcve.org/view.php?id=CVE-2022-32022
Car Rental Management System v1.0 is vulnerable to SQL Injection via /ip/car-rental-management-system/admin/ajax.php?action=login. Car Rental Management System versión v1.0, es vulnerable a una inyección SQL por medio del archivo /ip/car-rental-management-system/admin/ajax.php?action=login • https://github.com/k0xx11/bug_report/blob/main/vendors/campcodes.com/car-rental-management-system/SQLi-1.md https://github.com/k0xx11/bug_report/blob/main/vendors/campcodes.com/car-rental-management-system/SQLi-1.md. • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2022-32024
https://notcve.org/view.php?id=CVE-2022-32024
Car Rental Management System v1.0 is vulnerable to SQL Injection via car-rental-management-system/booking.php?car_id=. Car Rental Management System versión v1.0, es vulnerable a una inyección SQL por medio del archivo car-rental-management-system/booking.php?car_id= • https://github.com/k0xx11/bug_report/blob/main/vendors/campcodes.com/car-rental-management-system/SQLi-4.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •