Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25207 | A vulnerability was detected in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects unknown code of the file /admin/operations/travellers.php. The manipulation of the argument photo results in unrestricted upload. The attack can be launched remotely. The exploit is now public and may be used. |
Thu, 21 Aug 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mayurik
Mayurik online Tour \& Travel Management System |
|
| CPEs | cpe:2.3:a:mayurik:online_tour_\&_travel_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Mayurik
Mayurik online Tour \& Travel Management System |
Thu, 21 Aug 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Itsourcecode
Itsourcecode online Tour And Travel Management System |
|
| Vendors & Products |
Itsourcecode
Itsourcecode online Tour And Travel Management System |
Tue, 19 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 19 Aug 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects unknown code of the file /admin/operations/travellers.php. The manipulation of the argument photo results in unrestricted upload. The attack can be launched remotely. The exploit is now public and may be used. | |
| Title | itsourcecode Online Tour and Travel Management System travellers.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-19T19:24:56.741Z
Reserved: 2025-08-19T09:09:19.624Z
Link: CVE-2025-9153
Updated: 2025-08-19T19:24:46.461Z
Status : Analyzed
Published: 2025-08-19T19:15:38.213
Modified: 2026-04-29T01:00:01.613
Link: CVE-2025-9153
No data.
OpenCVE Enrichment
Updated: 2025-08-21T12:31:39Z
EUVD