6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security vulnerability has been detected in SourceCodester Wedding Reservation Management System 1.0. Impacted is the function insertReservation of the file function.php. Such manipulation of the argument number leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.
Basic Information
ID
CVE-2025-11479
Source
VulDB
Published
Oct 8, 2025 at 14:32
Affected Product
Vendor
SourceCodester
Product
Wedding Reservation Management System
Version
1.0
Affected Versions
SourceCodester Wedding Reservation Management System 1.0