CVE-2025-3728: Razormist Simple Hotel Booking System

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability classified as critical was found in SourceCodester Simple Hotel Booking System 1.0. This vulnerability affects the function Login. The manipulation of the argument uname leads to buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.

Affected products

  • Razormist Simple Hotel Booking System: version 1.0 only

Published 2025-04-16. Last modified 2026-06-17.