CVE-2025-12913: code-projects Responsive Hotel Site roomdel.php sql injection
A flaw has been found in code-projects Responsive Hotel Site 1.0. This affects an unknown part of the file /admin/roomdel.php. Executing manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12913?
CVE-2025-12913 is classified as a critical vulnerability due to the potential for remote SQL injection attacks.
How do I fix CVE-2025-12913?
To fix CVE-2025-12913, ensure that input parameters are properly sanitized and implement prepared statements for database queries.
Which software versions are affected by CVE-2025-12913?
CVE-2025-12913 affects versions of the Responsive Hotel Site created by Code-projects, specifically version 1.0.
Can CVE-2025-12913 be exploited remotely?
Yes, CVE-2025-12913 can be exploited remotely, allowing attackers to manipulate the ID parameter.
What is the impact of CVE-2025-12913?
The impact of CVE-2025-12913 includes unauthorized access to database information, which can lead to data breaches.