CVE-2025-6419: code-projects Simple Online Hotel Reservation System edit_room.php sql injection
A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/editroom.php. The manipulation of the argument roomtype leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6419?
CVE-2025-6419 has been classified as a critical vulnerability.
How can I fix CVE-2025-6419?
To fix CVE-2025-6419, validate and sanitize user inputs in the room_type parameter to prevent SQL injection.
What specific file is affected by CVE-2025-6419?
CVE-2025-6419 affects the /admin/edit_room.php file in the Simple Online Hotel Reservation System.
What type of vulnerability is CVE-2025-6419?
CVE-2025-6419 is classified as an SQL injection vulnerability.
Which application is impacted by CVE-2025-6419?
CVE-2025-6419 impacts the Simple Online Hotel Reservation System developed by code-projects.