CVE-2017-17570: Expedia Clone Project Expedia Clone
Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.
FS Expedia Clone 1.0 has SQL Injection via the pages.php or content.php id parameter, or the show-flight-result.php fl_orig or fl_dest parameter.
Affected products
- Expedia Clone Project Expedia Clone: version 1.0 only
Published 2017-12-13. Last modified 2026-06-17.