[webapps] Planyo_Online_Reservation_System 3.0 - Arbitrary File Read via SSRF
Exploit demonstrates arbitrary file read via SSRF in Planyo Online Reservation System 3.0.
Exploit-DB entry 52636 documents an arbitrary file read vulnerability in Planyo Online Reservation System version 3.0, reachable through a server-side request forgery condition. The public PoC shows how the web application can be manipulated to fetch and disclose local files. Sites running the vulnerable version could expose sensitive server files.