CVE-2025-11404 | SourceCodester Hotel and Lodge Management System 1.0 /pages/save_tax.php percentage sql injection
A vulnerability was found in SourceCodester Hotel and Lodge Management System 1.0. It has been declared as critical. This affects an unknown part of the file /pages/save_tax.php. Executing manipulation of the argument percentage can lead to sql injection.
This vulnerability is registered as CVE-2025-11404. It is possible to launch the attack remotely. Furthermore, an exploit is available.