cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2019-18417,https://securityvulnerability.io/vulnerability/CVE-2019-18417,,"Sourcecodester Restaurant Management System 1.0 allows an authenticated attacker to upload arbitrary files that can result in code execution. The issue occurs because the application fails to adequately sanitize user-supplied input, e.g., ""add a new food"" allows .php files.",Sourcecodester,Restaurant Management System,8.8,HIGH,0.001970000099390745,false,,false,false,false,,,false,false,,2019-10-24T17:30:14.000Z,0 CVE-2019-18414,https://securityvulnerability.io/vulnerability/CVE-2019-18414,,Sourcecodester Restaurant Management System 1.0 is affected by an admin/staff-exec.php Cross Site Request Forgery vulnerability due to a lack of CSRF protection. This could lead to an attacker tricking the administrator into executing arbitrary code or adding a staff entry via a crafted HTML page.,Sourcecodester,Restaurant Management System,8.8,HIGH,0.0040699997916817665,false,,false,false,false,,,false,false,,2019-10-24T17:20:23.000Z,0