CVE-2021-41511
CRITICALLodging Reservation Management System - SQL Injection
Title source: ruleDescription
The username and password field of login in Lodging Reservation Management System V1 can give access to any user by using SQL injection to bypass authentication.
Exploits (3)
References (7)
Scores
CVSS v3
9.8
EPSS
0.0063
EPSS Percentile
70.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-89
Status
published
Products (1)
lodging_reservation_management_system_project/lodging_reservation_management_system
1.0
Published
Oct 04, 2021
Tracked Since
Feb 18, 2026