CVE-2021-42948
16.09.2022, 16:15
HotelDruid Hotel Management Software v3.0.3 and below was discovered to have exposed session tokens in multiple links via GET parameters, allowing attackers to access user session id's.Enginsight
| Vendor | Product | Version |
|---|---|---|
| digitaldruid | hoteldruid | 𝑥 ≤ 3.0.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration