Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-18799 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /add_reserve.php. The manipulation of the argument firstname leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 23 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fabian
Fabian simple Online Hotel Reservation System |
|
| CPEs | cpe:2.3:a:fabian:simple_online_hotel_reservation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Fabianros
Fabianros simple Online Hotel Reservation System |
Fabian
Fabian simple Online Hotel Reservation System |
Wed, 25 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fabianros
Fabianros simple Online Hotel Reservation System |
|
| CPEs | cpe:2.3:a:fabianros:simple_online_hotel_reservation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Fabianros
Fabianros simple Online Hotel Reservation System |
Mon, 23 Jun 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 21 Jun 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /add_reserve.php. The manipulation of the argument firstname leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
| Title | code-projects Simple Online Hotel Reservation System add_reserve.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-06-23T14:42:47.669Z
Reserved: 2025-06-20T05:36:44.887Z
Link: CVE-2025-6394
Updated: 2025-06-23T14:42:35.562Z
Status : Analyzed
Published: 2025-06-21T02:15:20.247
Modified: 2025-10-23T20:06:00.793
Link: CVE-2025-6394
No data.
OpenCVE Enrichment
Updated: 2025-06-23T08:17:26Z
EUVD