CVE-2024-51101

PHPGURUKUL Restaurant Table Booking System using PHP and MySQL v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter at /rtbs/check-status.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpgurukul:restaurant_table_booking_system:1.0:*:*:*:*:*:*:*

History

28 May 2025, 01:42

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-89
Summary
  • (es) Se descubrió que HPGURUKUL Restaurant Table Booking System que utiliza PHP y MySQL v1.0 contenía una vulnerabilidad de inyección SQL a través del parámetro searchdata en /rtbs/check-status.php.
CPE cpe:2.3:a:phpgurukul:restaurant_table_booking_system:1.0:*:*:*:*:*:*:*
First Time Phpgurukul restaurant Table Booking System
Phpgurukul
References () https://github.com/0xBhushan/Writeups/blob/main/CVE/phpGurukul/Restaurant%20Table%20Booking%20System%20using%20PHP%20and%20MySQL/SQL%20Injection-Search.pdf - () https://github.com/0xBhushan/Writeups/blob/main/CVE/phpGurukul/Restaurant%20Table%20Booking%20System%20using%20PHP%20and%20MySQL/SQL%20Injection-Search.pdf - Exploit, Third Party Advisory

23 May 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-23 15:15

Updated : 2025-05-29 16:15


NVD link : CVE-2024-51101

Mitre link : CVE-2024-51101

CVE.ORG link : CVE-2024-51101


JSON object : View

Products Affected

phpgurukul

  • restaurant_table_booking_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')