CVE-2023-29839
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
A Stored Cross Site Scripting (XSS) vulnerability exists in multiple pages of Hotel Druid version 3.0.4, which allows arbitrary execution of commands. The vulnerable fields are Surname, Name, and Nickname in the Document function.
Affected (1)
Products: Digitaldruid: Hoteldruid
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 3.0.4 |
References (2)
Timeline
No history available yet.