Show filters
182 Total Results
Displaying 171-180 of 182
Sort by:
Attacker Value
Unknown

CVE-2017-17601

Disclosure Date: December 13, 2017 (last updated November 26, 2024)
Cab Booking Script 1.0 has SQL Injection via the /service-list city parameter.
0
Attacker Value
Unknown

CVE-2017-2168

Disclosure Date: May 22, 2017 (last updated November 26, 2024)
Cross-site scripting vulnerability in WP Booking System Free version prior to version 1.4 and WP Booking System Premium version prior to version 3.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2017-2151

Disclosure Date: April 28, 2017 (last updated November 26, 2024)
Cross-site scripting vulnerability in Booking Calendar version 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2017-2150

Disclosure Date: April 28, 2017 (last updated November 26, 2024)
Directory traversal vulnerability in Booking Calendar version 7.0 and earlier allows remote attackers to read arbitrary files via specially crafted captcha_chalange parameter.
0
Attacker Value
Unknown

CVE-2015-1000009

Disclosure Date: October 06, 2016 (last updated November 25, 2024)
Open proxy in Wordpress plugin google-adsense-and-hotel-booking v1.05
0
Attacker Value
Unknown

CVE-2014-4584

Disclosure Date: July 01, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in admin/editFacility.php in the wp-easybooking plugin 1.0.3 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the fID parameter.
0
Attacker Value
Unknown

CVE-2009-4386

Disclosure Date: December 22, 2009 (last updated October 04, 2023)
SQL injection vulnerability in hotel_tiempolibre_ext.php in Venalsur Booking Centre Booking System for Hotels Group, when magic_quotes_gpc is enabled, allows remote attackers to execute arbitrary SQL commands via the NoticiaID parameter and other unspecified vectors.
0
Attacker Value
Unknown

CVE-2008-6809

Disclosure Date: May 18, 2009 (last updated October 04, 2023)
SQL injection vulnerability in hotel_habitaciones.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 allows remote attackers to execute arbitrary SQL commands via the HotelID parameter.
0
Attacker Value
Unknown

CVE-2008-6810

Disclosure Date: May 18, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in admin/checklogin.php in Venalsur Booking Centre Booking System for Hotels Group 2.01 allow remote attackers to execute arbitrary SQL commands via the (1) myusername (username) and (2) password parameters. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-6216

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in cadena_ofertas_ext.php in Venalsur Booking Centre Booking System for Hotels Group allows remote attackers to execute arbitrary SQL commands via the OfertaID parameter.
0