Unknown · Sourcecodester Restaurant Management System · CVE-2025-4870
Name of the Vulnerable Software and Affected Versions:
itsourcecode Restaurant Management System version 1.0
Description:
A critical issue was found in the itsourcecode Restaurant Management System, affecting the /admin/menu save.php file. The manipulation of the `menu` argument leads to SQL injection. This issue can be exploited remotely.
Recommendations:
For itsourcecode Restaurant Management System version 1.0, consider restricting access to the /admin/menu save.php file until a patch is available. As a temporary workaround, avoid using the `menu` argument in the affected file to minimize the risk of exploitation.