Code-Projects Simple Online Hotel Reservation System是Code-Projects开源的一个简单的在线酒店预订系统。 code-projects Simple Online Hotel Reservation System 1.0版本存在注入漏洞,该漏洞源于文件/admin/add_room.php中参数room_type的错误操作导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Simple Online Hotel Reservation System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-6447 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System index.php sql injection |
| CVE-2025-6446 | 7.3 HIGH | code-projects Client Details System index.php sql injection |
| CVE-2025-6421 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System add_account.php sql injection |
| CVE-2025-6419 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System edit_room.php sql injection |
| CVE-2025-6418 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System edit_query_account.php sql injection |
| CVE-2025-6403 | 7.3 HIGH | code-projects School Fees Payment System student.php sql injection |
| CVE-2025-6394 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System add_reserve.php sql injection |
No comments yet