Fishing Reservation System 7.5 contains multiple remote SQL injection vulnerabilities in admin.php, cart.php, and calendar.php that allow attackers to inject malicious SQL commands. Attackers can exploit vulnerable parameters like uid, pid, type, m, y, and code to compromise the database management system and web application without user interaction.
Metrics
Affected Vendors & Products
References
History
Wed, 04 Feb 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 04 Feb 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fishing Reservation System
Fishing Reservation System fishing Reservation System |
|
| Vendors & Products |
Fishing Reservation System
Fishing Reservation System fishing Reservation System |
Tue, 03 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Fishing Reservation System 7.5 contains multiple remote SQL injection vulnerabilities in admin.php, cart.php, and calendar.php that allow attackers to inject malicious SQL commands. Attackers can exploit vulnerable parameters like uid, pid, type, m, y, and code to compromise the database management system and web application without user interaction. | |
| Title | Fishing Reservation System 7.5 - 'uid' SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-03T22:01:45.749Z
Updated: 2026-02-04T20:56:43.067Z
Reserved: 2026-02-01T13:16:06.486Z
Link: CVE-2020-37081
Updated: 2026-02-04T20:56:40.783Z
Status : Awaiting Analysis
Published: 2026-02-03T22:16:23.810
Modified: 2026-02-04T16:33:44.537
Link: CVE-2020-37081
No data.