CVE-2025-25747
11.03.2025, 16:15
Cross Site Scripting vulnerability in DigitalDruid HotelDruid v.3.0.7 allows an attacker to execute arbitrary code and obtain sensitive information via the ripristina_backup parameter in the crea_backup.php endpoint
Vendor | Product | Version |
---|---|---|
digitaldruid | hoteldruid | 3.0.7 |
𝑥
= Vulnerable software versions