9.8
CVSSv3

CVE-2023-40760

Published: 28/08/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

User enumeration is found in PHP Jabbers Hotel Booking System v4.0. This issue occurs during password recovery, where a difference in messages could allow an malicious user to determine if the user is valid or not, enabling a brute force attack with valid users.

Vulnerable Product Search on Vulmon Subscribe to Product

phpjabbers hotel booking system 4.0