PT-2025-15111 · Unknown · Codeprojects Online Restaurant Management System

Pyj2Cve

·

Published

2025-04-06

·

Updated

2025-04-30

·

CVE-2025-3341

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions codeprojects Online Restaurant Management System version 1.0
Description A critical vulnerability was found in codeprojects Online Restaurant Management System. This affects an unknown part of the file /admin/reservation view.php. The manipulation of the ID argument leads to SQL injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Recommendations For codeprojects Online Restaurant Management System version 1.0, consider disabling access to the /admin/reservation view.php file until a patch is available. Restrict the manipulation of the ID argument to minimize the risk of SQL injection. Avoid using the ID argument in the affected file until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-3341

Affected Products

Codeprojects Online Restaurant Management System