CVE-2025-8969 | itsourcecode Online Tour and Travel Management System 1.0 /admin/approve_user.php ID sql injection
A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/approve_user.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is handled as CVE-2025-8969. The attack may be launched remotely. Furthermore, there is an exploit available.