vendor:
J-MultipleHotelReservation
by:
Ihsan Sencan
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: J-MultipleHotelReservation
Affected Version From: 6.0.7
Affected Version To: 6.0.7
Patch Exists: NO
Related CWE:
CPE: a:cmsjunkie:j-multiplehotelreservation:6.0.7
Platforms Tested: Windows 7 x64, Kali Linux x64
2019
Joomla! Component J-MultipleHotelReservation 6.0.7 – SQL Injection
The Joomla! Component J-MultipleHotelReservation 6.0.7 is vulnerable to SQL Injection. An attacker can exploit this vulnerability by sending a specially crafted HTTP POST request to the target server.
Mitigation:
The vendor has not released a patch or mitigation for this vulnerability.