Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-29839

Опубликовано: 03 мая 2023
Источник: nvd
CVSS3: 5.4
EPSS Низкий

Описание

A Stored Cross Site Scripting (XSS) vulnerability exists in multiple pages of Hotel Druid version 3.0.4, which allows arbitrary execution of commands. The vulnerable fields are Surname, Name, and Nickname in the Document function.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:digitaldruid:hoteldruid:3.0.4:*:*:*:*:*:*:*

EPSS

Процентиль: 58%
0.0037
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79
CWE-79

Связанные уязвимости

CVSS3: 5.4
ubuntu
почти 3 года назад

A Stored Cross Site Scripting (XSS) vulnerability exists in multiple pages of Hotel Druid version 3.0.4, which allows arbitrary execution of commands. The vulnerable fields are Surname, Name, and Nickname in the Document function.

CVSS3: 5.4
debian
почти 3 года назад

A Stored Cross Site Scripting (XSS) vulnerability exists in multiple p ...

CVSS3: 5.4
github
почти 3 года назад

A Stored Cross Site Scripting (XSS) vulnerability exists in multiple pages of Hotel Druid version 3.0.4, which allows arbitrary execution of commands. The vulnerable fields are Surname, Name, and Nickname in the Document function.

EPSS

Процентиль: 58%
0.0037
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79
CWE-79