← Back

Hotel Management System Project

hotel_management_system_project

12 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (12)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Feb 9, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
Code-projects Hotel Managment System 1.0 allows SQL Injection via the 'pid' parameter in Hotel/admin/print.php?pid=2.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Feb 9, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Code-projects Hotel Managment System 1.0 allows SQL Injection via the 'eid' parameter in Hotel/admin/usersettingdel.php?eid=2.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Feb 9, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Code-projects Hotel Managment System 1.0, allows SQL Injection via the 'rid' parameter in Hotel/admin/roombook.php?rid=2.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Feb 9, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Code-projects Hotel Managment System 1.0, allows SQL Injection via the 'sid' parameter in Hotel/admin/show.php?sid=2.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Jan 13, 2023
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Tramyardg hotel-mgmt-system version 2022.4 is vulnerable to Cross Site Scripting (XSS) via process_update_profile.php.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Jan 13, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Tramyardg hotel-mgmt-system version 2022.4 is vulnerable to SQL Injection via /app/dao/CustomerDAO.php.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Sep 12, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Multiple persistent cross-site scripting (XSS) vulnerabilities in index.php in tramyardg Hotel Management System 1.0 allow remote attackers to inject arbitrary web script or HTML via multiple parameters such as "fullname...Show more
Multiple persistent cross-site scripting (XSS) vulnerabilities in index.php in tramyardg Hotel Management System 1.0 allow remote attackers to inject arbitrary web script or HTML via multiple parameters such as "fullname".Show less
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Jul 12, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
A vulnerability classified as problematic has been found in SourceCodester Hotel Management System 2.0. Affected is an unknown function of the file /ci_hms/massage_room/edit/1 of the component Room Edit Page. The manipul...Show more
A vulnerability classified as problematic has been found in SourceCodester Hotel Management System 2.0. Affected is an unknown function of the file /ci_hms/massage_room/edit/1 of the component Room Edit Page. The manipulation of the argument massageroomDetails with the input "><script>alert("XSS")</script> leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.Show less
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Jul 12, 2022
N/A· v4
5.4 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability was found in SourceCodester Hotel Management System 2.0. It has been rated as problematic. This issue affects some unknown processing of the file /ci_hms/search of the component Search. The manipulation o...Show more
A vulnerability was found in SourceCodester Hotel Management System 2.0. It has been rated as problematic. This issue affects some unknown processing of the file /ci_hms/search of the component Search. The manipulation of the argument search with the input "><script>alert("XSS")</script> leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.Show less
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Hotel Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at the login page.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Apr 13, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross site scripting (XSS) vulnerability in tramyardg hotel-mgmt-system, allows attackers to execute arbitrary code when when /admin.php is loaded.
1Hotel Management System Project
1Hotel Management System
Jun 17, 2026
Oct 4, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
A blind SQL injection vulnerability exists in the Raymart DG / Ahmed Helal Hotel-mgmt-system. A malicious attacker can retrieve sensitive database information and interact with the database using the vulnerable cid param...Show more
A blind SQL injection vulnerability exists in the Raymart DG / Ahmed Helal Hotel-mgmt-system. A malicious attacker can retrieve sensitive database information and interact with the database using the vulnerable cid parameter in process_update_profile.php.Show less