


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was identified in code-projects Hotel and Tourism Reservation System 1.0. This issue affects the function password_verify of the file /admin/log…
Published:
31 May 2026 at 22:00:00
Alert date:
1 June 2026 at 22:04:03
Source:
nvd.nist.gov
Web Technologies, Identity & Access
A vulnerability was identified in code-projects Hotel and Tourism Reservation System version 1.0 affecting the password_verify function in /admin/login.php of the Admin Login component. The vulnerability allows manipulation of the Password argument leading to improper authentication. The attack can be launched remotely and exploits are publicly available. This represents an authentication bypass vulnerability that could allow unauthorized administrative access to the hotel reservation system.
Technical details
Mitigation steps:
Affected products:
Hotel and Tourism Reservation System
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10288
https://code-projects.org/
https://github.com/Xmyronn/Hotel-and-Tourism-Reservation-System---Authentication-Bypass.git
https://vuldb.com/cve/CVE-2026-10288
https://vuldb.com/submit/825786
https://vuldb.com/vuln/367581
https://vuldb.com/vuln/367581/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
