Unknown · Sourcecodester Restaurant Management System · CVE-2025-4864
Name of the Vulnerable Software and Affected Versions:
itsourcecode Restaurant Management System version 1.0
Description:
A critical issue has been discovered, affecting the /admin/finished.php file. The manipulation of the `ID` argument leads to SQL injection. This issue can be exploited remotely.
Recommendations:
For itsourcecode Restaurant Management System version 1.0, consider restricting access to the /admin/finished.php file until a fix is available, and avoid using the `ID` argument in this context to minimize the risk of exploitation.