A reflected cross-site scripting (XSS) vulnerability exists in multiple pages in version 3.0.2 of the Hotel Druid application that allows for arbitrary execution of JavaScript commands.
References
Link Resource
https://github.com/dievus/CVE-2021-37833 Exploit Third Party Advisory
https://www.hoteldruid.com Product
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-08-03T12:31:06

Updated: 2021-08-03T12:31:06

Reserved: 2021-08-02T00:00:00


Link: CVE-2021-37833

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-08-03T13:15:09.440

Modified: 2021-08-11T16:19:58.740


Link: CVE-2021-37833

JSON object: View

cve-icon Redhat Information

No data.

CWE