============================================================================================================================================================================= | # Title : Online Flight Booking System 1.0 Remot File Upload vulnerability | | # Author : indoushka | | # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 130.0.0 (64 bits) | | # Vendor : https://www.campcodes.com/downloads/online-flight-booking-management-system-source-code/?wpdmdl=5913&refresh=66bbf742d7abc1723594562 | ============================================================================================================================================================================= [+] POC : [+] The following html code uploads a executable malicious file remotely . [+] Line 28 : Set your Target. [+] save payload as poc.html [+] payload :