CVE-2021-41651

A blind SQL injection vulnerability exists in the Raymart DG / Ahmed Helal Hotel-mgmt-system. A malicious attacker can retrieve sensitive database information and interact with the database using the vulnerable cid parameter in process_update_profile.php.
References
Link Resource
https://github.com/MobiusBinary/CVE-2021-41651/ Exploit Third Party Advisory
https://github.com/tramyardg/hotel-mgmt-system Product Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:hotel_management_system_project:hotel_management_system:-:*:*:*:*:*:*:*

Information

Published : 2021-10-04 07:15

Updated : 2021-10-12 07:17


NVD link : CVE-2021-41651

Mitre link : CVE-2021-41651

Products Affected
No products.
CWE