CVE-2025-9154 Information

Description

A flaw has been found in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unknown processing of the file /user/page-login.php. This manipulation of the argument email causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

Reference

https://github.com/HjsCS/CVE/issues/3 https://github.com/HjsCS/CVE/issues/3 https://itsourcecode.com/ https://vuldb.com/?ctiid.320534 https://vuldb.com/?id.320534 https://vuldb.com/?submit.630201

CNNVD-202508-2210 (Published: 2025-08-19)

Share on: