PT-2022-10919 · Unknown · Saibamen Hotelmanager

Brunoteixeira1996

·

Published

2022-11-04

·

Updated

2023-09-12

·

CVE-2021-39473

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Saibamen HotelManager version 1.2
Description The issue is related to Cross Site Scripting (XSS) due to improper sanitization of comment and contact fields. This allows for potential malicious script injection.
Recommendations For Saibamen HotelManager version 1.2, consider temporarily disabling or restricting the use of the comment and contact fields until a patch is available. Restrict access to these fields to minimize the risk of exploitation. Avoid using the comment and contact fields in affected forms until the issue is resolved.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-39473

Affected Products

Saibamen Hotelmanager