CVE-2025-6451
A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_pending.php. The manipulation of the argument transaction_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
Vendor
Product
CWE
Yayın Tarihi
2025-06-22 02:15:22
Güncelleme
2025-10-23 20:06:00
Source Identifier
cna@vuldb.com
KEV Date Added
-