Show filters
182 Total Results
Displaying 171-180 of 182
Sort by:
Attacker Value
Unknown
CVE-2017-17601
Disclosure Date: December 13, 2017 (last updated November 26, 2024)
Cab Booking Script 1.0 has SQL Injection via the /service-list city parameter.
0
Attacker Value
Unknown
CVE-2017-2168
Disclosure Date: May 22, 2017 (last updated November 26, 2024)
Cross-site scripting vulnerability in WP Booking System Free version prior to version 1.4 and WP Booking System Premium version prior to version 3.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2017-2151
Disclosure Date: April 28, 2017 (last updated November 26, 2024)
Cross-site scripting vulnerability in Booking Calendar version 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2017-2150
Disclosure Date: April 28, 2017 (last updated November 26, 2024)
Directory traversal vulnerability in Booking Calendar version 7.0 and earlier allows remote attackers to read arbitrary files via specially crafted captcha_chalange parameter.
0
Attacker Value
Unknown
CVE-2015-1000009
Disclosure Date: October 06, 2016 (last updated November 25, 2024)
Open proxy in Wordpress plugin google-adsense-and-hotel-booking v1.05
0
Attacker Value
Unknown
CVE-2014-4584
Disclosure Date: July 01, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in admin/editFacility.php in the wp-easybooking plugin 1.0.3 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the fID parameter.
0
Attacker Value
Unknown
CVE-2009-4386
Disclosure Date: December 22, 2009 (last updated October 04, 2023)
SQL injection vulnerability in hotel_tiempolibre_ext.php in Venalsur Booking Centre Booking System for Hotels Group, when magic_quotes_gpc is enabled, allows remote attackers to execute arbitrary SQL commands via the NoticiaID parameter and other unspecified vectors.
0
Attacker Value
Unknown
CVE-2008-6809
Disclosure Date: May 18, 2009 (last updated October 04, 2023)
SQL injection vulnerability in hotel_habitaciones.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 allows remote attackers to execute arbitrary SQL commands via the HotelID parameter.
0
Attacker Value
Unknown
CVE-2008-6810
Disclosure Date: May 18, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in admin/checklogin.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 allow remote attackers to execute arbitrary SQL commands via the (1) myusername (username) and (2) password parameters. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-6216
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in cadena_ofertas_ext.php in Venalsur Booking Centre Booking System for Hotels Group allows remote attackers to execute arbitrary SQL commands via the OfertaID parameter.
0