7.5
CVSSv2

CVE-2008-6809

Published: 18/05/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in hotel_habitaciones.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 allows remote malicious users to execute arbitrary SQL commands via the HotelID parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

bookingcentre booking system for hotels group 2.01

Exploits

[?] ?????????????????????????{In The Name Of Allah The Mercifull}?????????????????????? [?] [~] Tybe: (hotel_habitacionesphp HotelID) Remote SQL Injection Vulnerability [~] Vendor: wwwbookingcentreeu [*] Software: Hotels Group [*] author: ((R3d-D3v!L)) [*] Date: 18dec2009 [*] T!ME: 12:00 am [?] Home: WwWxP10ME [?] contact: N/A [?] [?]??????? ...
[~] ----------------------------بسم الله الرحمن الرحيم------------------------------ [~]Tybe: (hotel_habitacionesphp HotelID) Remote SQL Injection Vulnerability [~]Vendor: wwwbookingcentreeu [~]Software: Hotels Group [~]author: ((я3d D3v!L)) [~] Date: 28112 ...