jichngan/CVE-2023-29839

jichngan/CVE-2023-29839

Releases0
Stars1
Hotel Druid 3.0.4 Stored Cross Site Scripting Vulnerability

CVE History

CVEPublishedCVSS v3CVSS v2
5.4 MEDIUM

A Stored Cross Site Scripting (XSS) vulnerability exists in multiple pages of Hotel Druid version 3.0.4, which allows arbitrary execution of commands. The vulnerable fields are Surname, Name, and Nickname in the Document function.