Home
MEDIUM: 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NDefault status
unaffected
Any version before 5.6.8
affected
Description
Missing Authorization vulnerability in Magepeople inc. Bus Ticket Booking with Seat Reservation allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Bus Ticket Booking with Seat Reservation: from n/a before 5.6.8.
Problem types
Product status
Any version before 5.6.8
Credits
Legion Hunter | Patchstack Bug Bounty program
References
patchstack.com/...ken-access-control-vulnerability?_s_id=cve