Description

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking nd-booking allows PHP Local File Inclusion.This issue affects Hotel Booking: from n/a through <= 3.6.

INFO

Published Date :

2025-04-17T15:46:55.857Z

Last Modified :

2026-04-01T15:52:16.929Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2025-39526 vulnerability.

Vendors Products
Nicdark
  • Hotel Booking
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-39526.

CVSS Vulnerability Scoring System