CVE-2025-8381: Campcodes Online Hotel Reservation System add_reserve.php sql injection
A vulnerability, which was classified as critical, has been found in Campcodes Online Hotel Reservation System 1.0. This issue affects some unknown processing of the file /addreserve.php. The manipulation of the argument roomid leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8381?
CVE-2025-8381 is classified as a critical vulnerability.
How do I fix CVE-2025-8381?
To fix CVE-2025-8381, sanitize and validate inputs for the room_id parameter in the /add_reserve.php file to prevent SQL injection.
What systems are affected by CVE-2025-8381?
CVE-2025-8381 affects Campcodes Online Hotel Reservation System version 1.0.
What type of vulnerability is CVE-2025-8381?
CVE-2025-8381 is a SQL injection vulnerability.
What can attackers achieve with CVE-2025-8381?
Attackers can exploit CVE-2025-8381 to manipulate SQL queries, potentially accessing or modifying sensitive data.