CVE-2019-8937
HotelDruid 2.3.0 has XSS affecting the nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.
- Affected products
- Hoteldruid
- Digitaldruid Hoteldruid
- = 2.3.0
- Fix
- Available
- CVSS 3.0
- 6.1 MEDIUM
- EPSS
- 11.5% (96th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2019-05-17
CVE-2019-8937 at NVD
4 known exploits for CVE-2019-8937
Proof-of-concept code and exploit modules indexed by Sploitus