漏洞描述 Code-Projects Responsive Hotel Site是Code-Projects开源的一个响应式酒店网站。 code-projects Responsive Hotel Site 1.0版本存在注入漏洞,该漏洞源于/admin/newsletter.php文件的eid参数包含一个SQL注入漏洞。
相关漏洞推荐 POC CVE-2018-14728: Responsive filemanager 9.13.1 Server-Side Request Forgery POC CVE-2018-15535: Responsive FileManager <9.13.4 - Local File Inclusion POC CVE-2018-8823: PrestaShop Responsive Mega Menu Module - Remote Code Execution POC CVE-2019-8937: HotelDruid 2.3.0 - Cross-Site Scripting POC CVE-2020-29047: WP Hotel Booking < 1.10.4 - PHP Object Injection POC CVE-2021-24947: WordPress Responsive Vector Maps < 6.4.2 - Arbitrary File Read POC CVE-2021-37833: Hotel Druid 3.0.2 - Cross-Site Scripting POC CVE-2022-26564: HotelDruid Hotel Management Software 3.0.3 - Cross-Site Scripting POC CVE-2023-34537: Hoteldruid 3.0.5 - Cross-Site Scripting POC CVE-2023-43373: Hoteldruid v3.0.5 - SQL Injection POC CVE-2023-43374: Hoteldruid v3.0.5 - SQL Injection POC CVE-2023-5991: Hotel Booking Lite < 4.8.5 - Arbitrary File Download & Deletion POC projectsend-installer: ProjectSend Installation Page - Exposure