CVE-2020-25273: Online Bus Booking System Project Online Bus Booking System
Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.
In SourceCodester Online Bus Booking System 1.0, there is Authentication bypass on the Admin Login screen in admin.php via username or password SQL injection.
Affected products
- Online Bus Booking System Project Online Bus Booking System: version 1.0 only
Published 2020-10-08. Last modified 2026-06-17.