6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was determined in SourceCodester Online Hotel Reservation System 1.0. The affected element is an unknown function of the file deleteroominventory.php. Executing manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Basic Information
ID
CVE-2025-10788
Source
VulDB
Published
Sep 22, 2025 at 07:32
Affected Product
Vendor
SourceCodester
Product
Online Hotel Reservation System
Version
1.0
Affected Versions
SourceCodester Online Hotel Reservation System 1.0