An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to delete valid hotel room entries in the administrator section.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Hotel_management_system | Jayesh | 1.0 (including) | 1.0 (including) |