5.1
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A weakness has been identified in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /admin/reservation.php. This manipulation of the argument email causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.
Basic Information
ID
CVE-2025-12856
Source
VulDB
Published
Nov 7, 2025 at 13:32
Modified
Nov 7, 2025 at 17:19
Affected Product
Vendor
code-projects
Product
Responsive Hotel Site
Version
1.0
Affected Versions
code-projects Responsive Hotel Site 1.0