RSS   Vulnerabilities for 'Advance hotel booking system'   RSS

2014-06-11
 
CVE-2014-4035

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in booking_details.php in Best Soft Inc. (BSI) Advance Hotel Booking System 2.0 allows remote attackers to inject arbitrary web script or HTML via the title parameter.

 
2011-07-08
 
CVE-2010-4814

 

 
SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.

 


Copyright 2017, cxsecurity.com

 

Back to Top