HotelDruid v3.0.3 exists to contain a remote code execution (RCE) vulnerability which is exploited via an attacker inserting a crafted payload into the name field under the Create New Room module.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
digitaldruid hoteldruid 3.0.3 |