Unrated severityNVD Advisory· Published Jul 5, 2026· Updated Jul 6, 2026
itsourcecode Online Hotel Management System login.php sql injection
CVE-2026-14688
Description
A vulnerability was identified in itsourcecode Online Hotel Management System 1.0. The affected element is an unknown function of the file /admin/login.php. The manipulation of the argument email leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
Affected products
1- Range: = 1.0
Patches
Vulnerability mechanics
References
6- github.com/geminipolo1991-vampire/CVE---Web/issues/1mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-14688mitrethird-party-advisory
- vuldb.com/submit/846809mitrethird-party-advisory
- itsourcecode.commitreproduct
- vuldb.com/vuln/376284mitrevdb-entrytechnical-description
- vuldb.com/vuln/376284/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.