CVE-2023-49270
20.12.2023, 20:15
Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check_in_date' parameter of the reservation.php resourceis copied into the HTML document as plain textbetween tags. Any input is echoed unmodified in theapplication's response.
Vendor | Product | Version |
---|---|---|
kashipara | hotel_management | 1.0 |
𝑥
= Vulnerable software versions