Bestsoftinc Advance Hotel Booking System vulnerabilities
2 known vulnerabilities affecting bestsoftinc/advance_hotel_booking_system.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2010-4814P3HIGHCVSS 7.5PoCv1.02011-07-08
CVE-2010-4814 [HIGH] CWE-89 CVE-2010-4814: SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 a
SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
nvd
CVE-2014-4035P4MEDIUMCVSS 4.3PoCv2.02014-06-11
CVE-2014-4035 [MEDIUM] CWE-79 CVE-2014-4035: Cross-site scripting (XSS) vulnerability in booking_details.php in Best Soft Inc. (BSI) Advance Hote
Cross-site scripting (XSS) vulnerability in booking_details.php in Best Soft Inc. (BSI) Advance Hotel Booking System 2.0 allows remote attackers to inject arbitrary web script or HTML via the title parameter.
nvd