Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
Hotels Server
CRITICAL 9.8
CVE-2021-33948
SQL injection vulnerability in FantasticLBP Hotels Server v1.0 allows attacker to execute arbitrary code via the username parameter.
No fix yet
Fix from $2,300
2023-02-17
Hotels Server
MEDIUM 6.1
CVE-2020-18102
Cross Site Scripting (XSS) in Hotels_Server v1.0 allows remote attackers to execute arbitrary code by injecting crafted commands the data fields in t…
No fix yet
Fix from $1,600
2021-05-10
Hotels Server
CRITICAL 9.8
CVE-2019-8393
Hotels_Server through 2018-11-05 has SQL Injection via the API because the controller/api/login.php telephone parameter is mishandled.
Fix: after 2018-11-05
Fix from $2,300
2019-02-17
Hotels Server
HIGH 7.5
CVE-2019-7648
controller/fetchpwd.php and controller/doAction.php in Hotels_Server through 2018-11-05 rely on base64 in an attempt to protect password storage.
Fix: after 2018-11-05
Fix from $1,950
2019-02-08
Hotels Server
CRITICAL 9.8
CVE-2019-6497
Hotels_Server through 2018-11-05 has SQL Injection via the controller/fetchpwd.php username parameter.
Fix: after 2018-11-05
Fix from $2,300
2019-01-20