Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-42949

Опубликовано: 16 сент. 2022
Источник: debian
EPSS Средний

Описание

The component controlla_login function in HotelDruid Hotel Management Software v3.0.3 generates a predictable session token, allowing attackers to bypass authentication via bruteforce attacks.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
hoteldruidfixed3.0.4-1package
hoteldruidno-dsabullseyepackage
hoteldruidno-dsabusterpackage
hoteldruidno-dsastretchpackage

EPSS

Процентиль: 97%
0.36793
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 3 лет назад

The component controlla_login function in HotelDruid Hotel Management Software v3.0.3 generates a predictable session token, allowing attackers to bypass authentication via bruteforce attacks.

CVSS3: 9.8
nvd
больше 3 лет назад

The component controlla_login function in HotelDruid Hotel Management Software v3.0.3 generates a predictable session token, allowing attackers to bypass authentication via bruteforce attacks.

CVSS3: 9.8
github
больше 3 лет назад

The component controlla_login function in HotelDruid Hotel Management Software v3.0.3 generates a predictable session token, allowing attackers to bypass authentication via bruteforce attacks.

EPSS

Процентиль: 97%
0.36793
Средний