NA

CVE-2023-34537

Published: 13/06/2023 Updated: 20/06/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

A Reflected XSS exists in HotelDruid version 3.0.5, an attacker can issue malicious code/command on affected webpage's parameter to trick user on browser and/or exfiltrate data.

Vulnerable Product Search on Vulmon Subscribe to Product

digitaldruid hoteldruid 3.0.5

Vendor Advisories

Debian Bug report logs - #1038251 hoteldruid: CVE-2023-33817 CVE-2023-34537 Package: src:hoteldruid; Maintainer for src:hoteldruid is Marco Maria Francesco De Santis <marco@digitaldruidnet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 16 Jun 2023 18:57:06 UTC Severity: important Tags: security, ...

Github Repositories

CVE-2023-34537--- Reflected XSS found in HotelDruid V305 HotelDruid v305 are vulnerable to multipe XSS vulnerabilities These vulnerabilities could allows remote authenticated attackers to inject arbitrary web script or HTML This is my third repo Don't beat me if i didn't explain well Description of product : Hoteldruid is an open source program for hotel manag