CVE-2026-5551 | itsourcecode Free Hotel Reservation System 1.0 Parameter /hotel/admin/login.php email sql injection (EUVD-2026-19050)
A vulnerability categorized as critical has been discovered in itsourcecode Free Hotel Reservation System 1.0. This vulnerability affects unknown code of the file /hotel/admin/login.php of the component Parameter Handler. The manipulation of the argument email results in sql injection.
This vulnerability is cataloged as CVE-2026-5551. The attack may be launched remotely. Furthermore, there is an exploit available.