← Back

CVE-2023-49272

nvd nist
Published: Dec 20, 2023Modified: Dec 5, 2025

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'children' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.

Affected (1)

1 product
Hotel Management System
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.0

References (4)

Source: help@fluidattacks.com
Third Party Advisory
Source: help@fluidattacks.com
Product
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Product

Timeline

No history available yet.