Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Hotel and Lodge Management System — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in Hotel and Lodge Management System, with AI-generated Chinese analysis, references, and POCs.

This page documents the Common Weakness Enumerations associated with the Hotel and Lodge Management System product, categorized by their specific vulnerability tags. It aggregates reported security flaws found within this hospitality software ecosystem, covering incidents and advisories released between 2018 and 2024. By consulting this collection, users can effectively track the vendor’s history of addressing security issues, gain a deeper understanding of the underlying weakness classes affecting the system, and examine the complete vulnerability timeline for this specific product. The data emphasizes patterns in how authentication flaws, input validation errors, and configuration mistakes have manifested over time, providing a clear view of the security posture evolution. This resource is intended for security researchers, system administrators, and auditors who need to assess the risk profile of the platform without relying on fragmented external reports. The entries include references to official vendor notices and independent disclosures, ensuring a comprehensive record of known issues. By centralizing this information, the page facilitates a more informed evaluation of potential risks and aids in prioritizing remediation efforts based on historical data. Readers can use these insights to benchmark their own implementations against similar systems and identify common misconfigurations or code vulnerabilities that frequently occur in lodge management environments. This structured overview supports proactive security management by highlighting recurring weaknesses and demonstrating the vendor’s responsiveness to discovered defects, thereby assisting stakeholders in making data-driven decisions regarding system upgrades, patches, and operational safeguards.

Vendor: SourceCodester

CVE IDTitleCVSSSeverityPublished
CVE-2025-11474 SourceCodester Hotel and Lodge Management System edit_booking.php sql injection CWE-89 6.3 Medium2025-10-08
CVE-2025-11473 SourceCodester Hotel and Lodge Management System edit_curr.php sql injection CWE-89 7.3 High2025-10-08
CVE-2025-11472 SourceCodester Hotel and Lodge Management System edit_room.php sql injection CWE-89 7.3 High2025-10-08
CVE-2025-11471 SourceCodester Hotel and Lodge Management System edit_customer.php sql injection CWE-89 7.3 High2025-10-08
CVE-2025-11470 SourceCodester Hotel and Lodge Management System manage_website.php unrestricted upload CWE-434 4.7 Medium2025-10-08
CVE-2025-11469 SourceCodester Hotel and Lodge Management System save_customer.php sql injection CWE-89 6.3 Medium2025-10-08
CVE-2025-11405 SourceCodester Hotel and Lodge Management System del_tax.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11404 SourceCodester Hotel and Lodge Management System save_tax.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11403 SourceCodester Hotel and Lodge Management System del_booking.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11402 SourceCodester Hotel and Lodge Management System del_curr.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11401 SourceCodester Hotel and Lodge Management System save_curr.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11400 SourceCodester Hotel and Lodge Management System del_room.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11399 SourceCodester Hotel and Lodge Management System save_room.php sql injection CWE-89 6.3 Medium2025-10-07
CVE-2025-11398 SourceCodester Hotel and Lodge Management System Profile profile.php unrestricted upload CWE-434 6.3 Medium2025-10-07
CVE-2025-11397 SourceCodester Hotel and Lodge Management System login.php sql injection CWE-89 7.3 High2025-10-07

All 15 known CVE vulnerabilities affecting Hotel and Lodge Management System with full Chinese analysis, references, and POCs where available.