A vulnerability classified as critical has been found in ScriptAndTools Online-Travling-System 1.0. Affected is an unknown function of the file /admin/viewpackage.php. The manipulation leads to improper access controls. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
Link | Tags |
---|---|
https://vuldb.com/?id.306504 | third party advisory vdb entry |
https://vuldb.com/?ctiid.306504 | signature vdb entry permissions required |
https://vuldb.com/?submit.559514 | third party advisory vdb entry |
https://www.websecurityinsights.my.id/2025/04/script-and-tools-online-travling-system_71.html | third party advisory exploit |