CVE-2026-14762: code-projects Hotel and Tourism Reservation Room Management rooms.php sql injection
A vulnerability was detected in code-projects Hotel and Tourism Reservation 1.0. The impacted element is an unknown function of the file /admin/rooms.php of the component Room Management Page. The manipulation of the argument delete results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14762?
CVE-2026-14762 has a severity rating of high, with a score of 7.3.
How do I fix CVE-2026-14762?
To fix CVE-2026-14762, update your version of Code-projects Hotel and Tourism Reservation or implement input validation and parameterized queries to mitigate SQL injection vulnerabilities.
What type of vulnerability is CVE-2026-14762?
CVE-2026-14762 is a SQL injection vulnerability found in the Room Management Page of the application.
Which file is affected by CVE-2026-14762?
CVE-2026-14762 affects the /admin/rooms.php file of the Code-projects Hotel and Tourism Reservation application.
What can attackers achieve with CVE-2026-14762?
Attackers can exploit CVE-2026-14762 to execute arbitrary SQL commands on the database of the application.