dhammon/HotelDruid-CVE-2021-42948

dhammon/HotelDruid-CVE-2021-42948

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
3.7 LOW

HotelDruid Hotel Management Software v3.0.3 and below was discovered to have exposed session tokens in multiple links via GET parameters, allowing attackers to access user session id's.