CVE-2026-7133

Severity CVSS v4.0:
LOW
Type:
CWE-284 Improper Access Control
Publication date:
27/04/2026
Last modified:
29/04/2026

Description

A vulnerability was determined in code-projects Online Lot Reservation System 1.0. This impacts an unknown function of the file /activity.php. This manipulation of the argument directory causes unrestricted upload. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.