CVE-2023-49271
EUVD-2023-5327320.12.2023, 20:15
Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check_out_date' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jayesh | hotel_management_system | 1.0 |
𝑥
= Vulnerable software versions