Security Advisory

CVE-2020-25889

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-12-08 13:00:53
Last updated 2024-08-04 15:49:06
Assigner mitre
State PUBLISHED

Description

Online Bus Booking System Project Using PHP/MySQL version 1.0 has SQL injection via the login page. By placing SQL injection payload on the login page attackers can bypass the authentication and can gain the admin privilege.