cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-3358,https://securityvulnerability.io/vulnerability/CVE-2024-3358,Cross Site Scripting Vulnerability in Aplaya Beach Resort Online Reservation System 1.0,A vulnerability classified as problematic was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument to leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-259462 is the identifier assigned to this vulnerability.,Sourcecodester,Aplaya Beach Resort Online Reservation System,3.5,LOW,0.00044999999227002263,false,,false,false,true,2024-04-06T03:15:00.000Z,true,false,false,,2024-04-06T04:15:00.000Z,0 CVE-2024-3352,https://securityvulnerability.io/vulnerability/CVE-2024-3352,SQL Injection Vulnerability in SourceCodester Aplaya Beach Resort Online Reservation System,"A security flaw has been identified in the SourceCodester Aplaya Beach Resort Online Reservation System, specifically within the admin/mod_comments/index.php file. This vulnerability allows attackers to manipulate the 'id' parameter, leading to SQL injection. As a result, unauthorized users can execute arbitrary SQL commands against the database remotely. Public knowledge of this vulnerability has been disclosed, raising concerns regarding its potential exploitation. System administrators are strongly urged to apply security patches and review their configurations to mitigate risks associated with this vulnerability.",Sourcecodester,Aplaya Beach Resort Online Reservation System,7.3,HIGH,0.00044999999227002263,false,,false,false,true,2024-04-05T18:15:00.000Z,true,false,false,,2024-04-05T19:15:00.000Z,0 CVE-2024-3350,https://securityvulnerability.io/vulnerability/CVE-2024-3350,SourceCodester Aplaya Beach Resort Online Reservation System index.php sql injection,"A security vulnerability has been identified in the Aplaya Beach Resort Online Reservation System version 1.0, specifically affecting the file admin/mod_room/index.php. This issue allows attackers to manipulate the argument 'id', potentially leading to SQL injection attacks. The exploitation of this vulnerability can be conducted remotely, presenting a serious risk to the integrity and confidentiality of the database used by the system. Public disclosure of this vulnerability has occurred, making it accessible for exploitation by threat actors.",Sourcecodester,Aplaya Beach Resort Online Reservation System,7.3,HIGH,0.00044999999227002263,false,,false,false,true,2024-04-05T17:15:00.000Z,true,false,false,,2024-04-05T18:15:00.000Z,0