Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Online Hotel Reservation System — Vulnerabilities & Security Advisories 24

All 24 CVE vulnerabilities found in Online Hotel Reservation System, with AI-generated Chinese analysis, references, and POCs.

This vulnerability aggregation page focuses on the Online Hotel Reservation System, a commercial web application used for managing reservations and guest data. It collects and categorizes publicly disclosed security flaws, ranging from authentication bypasses to data exposure issues, covering advisories published over the last five years. Visitors can track this specific vendor's advisory history, examine the broader weakness class related to input validation and session management, and review the product's cumulative vulnerability profile without needing to search individual databases.

Vendor: SourceCodester

CVE ID Title CVSS Severity Published
CVE-2025-11354 code-projects Online Hotel Reservation System addslideexec.php unrestricted upload CWE-434 6.3 Medium 2025-10-07
CVE-2025-11353 code-projects Online Hotel Reservation System addgalleryexec.php unrestricted upload CWE-434 6.3 Medium 2025-10-07
CVE-2025-11352 code-projects Online Hotel Reservation System addexec.php unrestricted upload CWE-434 6.3 Medium 2025-10-07
CVE-2025-11351 code-projects Online Hotel Reservation System editpicexec.php unrestricted upload CWE-434 6.3 Medium 2025-10-07
CVE-2025-11055 SourceCodester Online Hotel Reservation System updateaddress.php sql injection CWE-89 7.3 High 2025-09-27
CVE-2025-10843 Reservation Online Hotel Reservation System paypalpayout.php sql injection CWE-89 7.3 High 2025-09-23
CVE-2025-10789 SourceCodester Online Hotel Reservation System deleteslide.php sql injection CWE-89 7.3 High 2025-09-22
CVE-2025-10788 SourceCodester Online Hotel Reservation System deleteroominventory.php sql injection CWE-89 7.3 High 2025-09-22
CVE-2025-9789 SourceCodester Online Hotel Reservation System edituser.php sql injection CWE-89 7.3 High 2025-09-01
CVE-2025-8470 SourceCodester Online Hotel Reservation System deleteroom.php sql injection CWE-89 7.3 High 2025-08-02
CVE-2025-8469 SourceCodester Online Hotel Reservation System deletegallery.php sql injection CWE-89 7.3 High 2025-08-02
CVE-2025-8382 Campcodes Online Hotel Reservation System edit_room.php sql injection CWE-89 6.3 Medium 2025-07-31
CVE-2025-8381 Campcodes Online Hotel Reservation System add_reserve.php sql injection CWE-89 6.3 Medium 2025-07-31
CVE-2025-8380 Campcodes Online Hotel Reservation System add_query_account.php cross site scripting CWE-79 3.5 Low 2025-07-31
CVE-2025-8379 Campcodes Online Hotel Reservation System edit_room.php unrestricted upload CWE-434 4.7 Medium 2025-07-31
CVE-2025-8378 Campcodes Online Hotel Reservation System Login index.php sql injection CWE-89 7.3 High 2025-07-31
CVE-2025-6458 code-projects Online Hotel Reservation System execedituser.php sql injection CWE-89 7.3 High 2025-06-22
CVE-2025-6457 code-projects Online Hotel Reservation System demo.php sql injection CWE-89 7.3 High 2025-06-22
CVE-2025-6456 code-projects Online Hotel Reservation System order.php sql injection CWE-89 7.3 High 2025-06-22
CVE-2025-6455 code-projects Online Hotel Reservation System messageexec.php sql injection CWE-89 7.3 High 2025-06-22
CVE-2025-6355 SourceCodester Online Hotel Reservation System execeditroom.php sql injection CWE-89 7.3 High 2025-06-20
CVE-2024-10413 SourceCodester Online Hotel Reservation System update.php upload unrestricted upload CWE-434 6.3 Medium 2024-10-27
CVE-2024-10411 SourceCodester Online Hotel Reservation System controller.php doCheckout sql injection CWE-89 6.3 Medium 2024-10-27
CVE-2024-10410 SourceCodester Online Hotel Reservation System controller.php upload unrestricted upload CWE-434 6.3 Medium 2024-10-27

All 24 known CVE vulnerabilities affecting Online Hotel Reservation System with full Chinese analysis, references, and POCs where available.