PT-2025-46963 · Unknown · Simple Online Hotel Reservation System

Hanshi

·

Published

2025-11-14

·

Updated

2025-11-14

·

CVE-2025-13169

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Simple Online Hotel Reservation System version 1.0
Description A security issue exists in Simple Online Hotel Reservation System version 1.0. The issue involves SQL injection within the /add query reserve.php file. Manipulation of the room id parameter can lead to exploitation. The exploit has been publicly disclosed and may be used to compromise the system remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-13169

Affected Products

Simple Online Hotel Reservation System