Sploitus

CVE-2019-9084

No indexed exploits for CVE-2019-9084 yet

In Hoteldruid before 2.3.1, a division by zero was discovered in $num_tabelle in tab_tariffe.php (aka the numtariffa1 parameter) due to the mishandling of non-numeric values, as demonstrated by the /tab_tariffe.php?anno=[YEAR]&numtariffa1=1a URI. It could allow an administrator to conduct remote denial of service (disrupting certain business functions of the product).

Affected products
Hoteldruid
Digitaldruid Hoteldruid
< 2.3.1
Fix
Available
CVSS 3.0
4.9 MEDIUM
EPSS
1.7% (76th percentile)
Weakness
CWE-369
NVD status
Modified
Published
2019-06-07
CVE-2019-9084 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2019-9084 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2019-9084 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.