ZeroHour

CVE-2021-41511

PoC ×5
CVSS 3.1
9.8 critical
EPSS
3%p88
Published
()
Modified
Description

The username and password field of login in Lodging Reservation Management System V1 can give access to any user by using SQL injection to bypass authentication.

Vendors
lodging reservation management system project
Products
lodging reservation management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.