CVE-2020-25273: Online Bus Booking System Project Online Bus Booking System

Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.

In SourceCodester Online Bus Booking System 1.0, there is Authentication bypass on the Admin Login screen in admin.php via username or password SQL injection.

Affected products

Published 2020-10-08. Last modified 2026-06-17.