RULE(RULE ID:336600)

Rule General Information
Release Date: 2022-05-23
Rule Name: Bus Pass Management System Insecure Direct Object References Vulnerability (CVE-2022-29008)
Severity:
CVE ID:
Rule Protection Details
Description: An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensitive information.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: ExploitDB:50263
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://phpgurukul.com/bus-pass-management-system-using-php-and-mysql