NA

CVE-2023-47164

Published: 10/11/2023 Updated: 16/11/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross-site scripting vulnerability in HOTELDRUID 3.0.5 and previous versions allows a remote unauthenticated malicious user to execute an arbitrary script on the web browser of the user who is logging in to the product.

Vulnerable Product Search on Vulmon Subscribe to Product

digitaldruid hoteldruid

Vendor Advisories

Debian Bug report logs - #1055772 hoteldruid: CVE-2023-47164 Package: src:hoteldruid; Maintainer for src:hoteldruid is Marco Maria Francesco De Santis <marco@digitaldruidnet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 11 Nov 2023 07:51:02 UTC Severity: grave Tags: security, upstream Found in ...