7.5
CVSSv2

CVE-2008-5864

Published: 06/01/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 770
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the Top Hotel (com_tophotelmodule) component 1.0 in the Hotel Booking Reservation System (aka HBS) 1.0.0 for Joomla! allows remote malicious users to execute arbitrary SQL commands via the id parameter in a showhoteldetails action to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

joomlahbs hotel_booking_reservation_system 1.0.0

joomlahbs com_tophotelmodule 1.0.0

Exploits

############################################################# Joomla Component com_tophotelmodule(id) Blind SQL-injection ############################################################# ################################################### #[~] Author : boom3rang #[~] Kosova Hackers Group [wwwkhg-crewws] #[~] Greetz : H!tm@N, KHG, chs, redc00d ...
#!/usr/bin/perl -w #Joomla com_5starhotels Sql injection# ######################################## #[~] Author : EcHoLL #[~] wwwwarezturkorg wwwtahribatcom #[~] Greetz : Black_label TURK Godlike Nitrous #[!] Module_Name: com_5starhotels #[!] Script_Name: Joomla #[!] Google_Dork: inurl:"com_5starhotels" ################################ ...
############################################################# Joomla Component com_hbssearch(r_type) Blind SQL-injection ############################################################# ################################################### #[~] Author : boom3rang #[~] Kosova Hackers Group [wwwkhg-crewws] #[~] Greetz : H!tm@N, KHG, chs, redc00de, p ...
Joomla Component com_lowcosthotels (id) Blind SQL Injection Vulnerability ___________________________________ Author: Hussin X Home : wwwIQ-TYcom & wwwTrYaGcc ___________________________________ script : wwwjoomlahbscom/ DorK : inurl:indexphp?option=com_lowcosthotels Demo : _______ wwwleveltensolutionsnet/spa/ ...