Code-Projects Hotel And Tourism Reservation System vulnerabilities
4 known vulnerabilities affecting code-projects/hotel_and_tourism_reservation_system.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2026-10288P3HIGHCVSS 7.3v1.02026-06-01
CVE-2026-10288 [HIGH] CWE-287 CVE-2026-10288: A vulnerability was identified in code-projects Hotel and Tourism Reservation System 1.0. This issue
A vulnerability was identified in code-projects Hotel and Tourism Reservation System 1.0. This issue affects the function password_verify of the file /admin/login.php of the component Admin Login. Such manipulation of the argument Password leads to improper authentication. It is possible to launch the attack remotely. The exploit is publicly available
nvd
CVE-2026-10290P3HIGHCVSS 7.3v1.02026-06-01
CVE-2026-10290 [HIGH] CWE-74 CVE-2026-10290: A weakness has been identified in code-projects Hotel and Tourism Reservation System 1.0. The affect
A weakness has been identified in code-projects Hotel and Tourism Reservation System 1.0. The affected element is an unknown function of the file tour.php of the component GET Parameter Handler. Executing a manipulation of the argument tour can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public
nvd
CVE-2026-11342P3HIGHCVSS 7.3v1.02026-06-05
CVE-2026-11342 [HIGH] CWE-74 CVE-2026-11342: A vulnerability has been found in code-projects Hotel and Tourism Reservation System 1.0. This affec
A vulnerability has been found in code-projects Hotel and Tourism Reservation System 1.0. This affects an unknown function of the file /details.php. Such manipulation of the argument room leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-10289P4MEDIUMCVSS 4.3v1.02026-06-01
CVE-2026-10289 [MEDIUM] CWE-79 CVE-2026-10289: A security flaw has been discovered in code-projects Hotel and Tourism Reservation System 1.0. Impac
A security flaw has been discovered in code-projects Hotel and Tourism Reservation System 1.0. Impacted is an unknown function of the file /ht/tour.php. Performing a manipulation of the argument name /email /people /number results in cross site scripting. The attack can be initiated remotely. The exploit has been released to the public and may be use
nvd