← Volver al buscador de CVEs

CVE-2026-7132

code-projects Online Lot Reservation System

Descripción

A vulnerability was found in code-projects Online Lot Reservation System up to 1.0. This affects the function readfile of the file /download.php. The manipulation of the argument File results in path traversal. It is possible to launch the attack remotely. The exploit has been made public and could be used.

CVSS 5.3EPSS 0.44%Riesgo 0.55
Ver fuente
Publicación
2026-04-27 15:16:21
Versiones afectadas
==1.0
Tipo
Installed app
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N