A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been classified as critical. Affected is the function login/login2 of the file /admin/login.php of the component Admin Login Page. The manipulation of the argument username leads to sql injection.

This vulnerability is traded as CVE-2024-7498. It is possible to launch the attack remotely. Furthermore, there is an exploit available.