Metrics
Affected Vendors & Products
Mon, 27 Oct 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bdtask
Bdtask flight Booking Software |
|
| Vendors & Products |
Bdtask
Bdtask flight Booking Software |
Mon, 27 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Oct 2025 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in Bdtask Flight Booking Software up to 3.1. Affected by this issue is some unknown functionality of the file /admin/transaction/deposit of the component Deposit Handler. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Bdtask Flight Booking Software Deposit deposit unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-27T04:32:05.653Z
Updated: 2025-10-27T20:04:43.065Z
Reserved: 2025-10-25T16:21:44.365Z
Link: CVE-2025-12222
Updated: 2025-10-27T20:04:35.946Z
Status : Awaiting Analysis
Published: 2025-10-27T05:15:37.053
Modified: 2025-10-27T13:19:49.063
Link: CVE-2025-12222
No data.