Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-42948

Опубликовано: 16 сент. 2022
Источник: nvd
CVSS3: 3.7
EPSS Низкий

Описание

HotelDruid Hotel Management Software v3.0.3 and below was discovered to have exposed session tokens in multiple links via GET parameters, allowing attackers to access user session id's.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:digitaldruid:hoteldruid:*:*:*:*:*:*:*:*
Версия до 3.0.3 (включая)

EPSS

Процентиль: 40%
0.00185
Низкий

3.7 Low

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 3.7
ubuntu
больше 3 лет назад

HotelDruid Hotel Management Software v3.0.3 and below was discovered to have exposed session tokens in multiple links via GET parameters, allowing attackers to access user session id's.

CVSS3: 3.7
debian
больше 3 лет назад

HotelDruid Hotel Management Software v3.0.3 and below was discovered t ...

CVSS3: 3.7
github
больше 3 лет назад

HotelDruid Hotel Management Software v3.0.3 and below was discovered to have exposed session tokens in multiple links via GET parameters, allowing attackers to access user session id's.

EPSS

Процентиль: 40%
0.00185
Низкий

3.7 Low

CVSS3

Дефекты

CWE-319