← CVE Tracker
7.3HIGH

CVE-2025-10623 — A vulnerability was identified in SourceCodester Hotel Reservation System 1.0.

Fabian · Hotel Reservation System · Published 17 Sept 2025 · Modified 26 Sept 2026

Description

A vulnerability was identified in SourceCodester Hotel Reservation System 1.0. The impacted element is an unknown function of the file deleteuser.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.

References

What to do
  1. Check whether Hotel Reservation System is in your asset inventory.
  2. Patch in the next maintenance window; prioritise internet-facing systems.
  3. Record the decision in your risk register for audit evidence.
Alert me on similar CVEs →
Share

Link: adminadda.com/cve/CVE-2025-10623