Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'adults' parameter of the reservation.php resource is copied into the HTML document as plain text between tags. Any input is echoed unmodified in the application's response.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: Fluid Attacks
Published: 2023-12-20T17:41:53.093Z
Updated: 2024-08-02T21:53:45.107Z
Reserved: 2023-11-24T16:25:53.192Z
Link: CVE-2023-49269

No data.

Status : Modified
Published: 2023-12-20T18:15:13.240
Modified: 2024-11-21T08:33:09.120
Link: CVE-2023-49269

No data.