📦

advance_hotel_booking_system

Vendor: bestsoftinc

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 0 Remote Access
Total CVEs 7 Total Indexed
Avg. EPSS 2.14% Exploit Prob.
Latest CVE CVE-2014-4035 Jun 11

Security Vulnerability Index

Page 1 / 1
4.3 CVSS
CVE-2014-4035
Exploit Found

Cross-site scripting (XSS) vulnerability in booking_details.php in Best Soft Inc. (BSI) Advance Hotel Booking System 2.0 allows remote attackers to inject arbitrary web script or HTML via the title parameter.

EPSS: 3.28%
7.5 CVSS
CVE-2010-4814
Exploit Found

SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.

EPSS: 0.99%