CVE-2025-11397 | SourceCodester Hotel and Lodge Management System 1.0 /login.php email sql injection
A vulnerability classified as critical has been found in SourceCodester Hotel and Lodge Management System 1.0. The affected element is an unknown function of the file /login.php. Performing manipulation of the argument email results in sql injection.
This vulnerability was named CVE-2025-11397. The attack may be initiated remotely. In addition, an exploit is available.