CVE-2025-8982 | itsourcecode Online Tour and Travel Management System 1.0 currency.php curr_code sql injection
A vulnerability classified as critical was found in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects unknown code of the file /admin/operations/currency.php. The manipulation of the argument curr_code leads to sql injection.
This vulnerability was named CVE-2025-8982. The attack can be initiated remotely. Furthermore, there is an exploit available.