9.8
CVSSv3

CVE-2023-50865

Published: 04/01/2024 Updated: 10/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'city' parameter of the hotelSearch.php resource does not validate the characters received and they are sent unfiltered to the database.

Vulnerable Product Search on Vulmon Subscribe to Product

kashipara travel website 1.0