216.73.216.197

CVE-2026-3806

· Published 09/03/2026 06:16 · Modified 09/03/2026 15:03

Labels: CVE-2026-3806 2026-03-09CVE-2026-3806CWE-74CWE-89[email protected]

Essential information

Published
09/03/2026 06:16
Modified
09/03/2026 15:03
Author
Creator
CVSS
5.3 MEDIUM (v3) 5.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A weakness has been identified in SourceCodester/janobe Resort Reservation System 1.0. This issue affects some unknown processing of the file /room_rates.php. This manipulation of the argument q causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
oretnom23 / resort reservation system cpe:2.3:a:oretnom23:resort_reservation_system:1.0:*:*:*:*:*:*:*

References