← Back to CVE List
CVE-2024-48411
itsourcecode Online Tours and Travels Management System v1.0 is vulnerable to SQL Injection (SQLI) via a crafted payload to the val-email parameter in forget_password.php.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt