Tourism Script Accommodation Hotel... CVE-2009-4617 CNNVD-201001-180

7.5 AV AC AU C I A
发布: 2010-01-18
修订: 2017-09-19

Tourism Script Accommodation Hotel Booking Portal Script中存在多个SQL注入漏洞,远程攻击者可以借(1) hotel.php, (2) details.php, (3) roomtypes.php, (4) photos.php, (5) map.php, (6) weather.php, (7) reviews.php,以及(8) book.php中的hotel_id参数执行任意SQL指令。

0%
当前有1条漏洞利用/PoC
当前有1条受影响产品信息