Description
A vulnerability has been found in code-projects Tourism Management System 1.0 and classified as critical. This vulnerability affects the function AddUser of the component User Registration. The manipulation of the argument username/password leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.
In code-projects Tourism Management System 1.0 wurde eine kritische Schwachstelle gefunden. Betroffen ist die Funktion AddUser der Komponente User Registration. Dank Manipulation des Arguments username/password mit unbekannten Daten kann eine buffer overflow-Schwachstelle ausgenutzt werden. Die Umsetzung des Angriffs hat dabei lokal zu erfolgen. Der Exploit steht zur öffentlichen Verfügung.
Problem types
Product status
Timeline
| 2025-05-17: | Advisory disclosed |
| 2025-05-17: | VulDB entry created |
| 2025-05-17: | VulDB entry last update |
Credits
zzzxc (VulDB User)
References
vuldb.com/?id.309442 (VDB-309442 | code-projects Tourism Management System User Registration AddUser buffer overflow)
vuldb.com/?ctiid.309442 (VDB-309442 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.577498 (Submit #577498 | Buffer Overflow Vulnerabilities in Tourism Management System User Authentication v1.0 Buffer Overflow)
github.com/...643/cve/blob/main/Tourism-Management-System.md
code-projects.org/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.