Doditsolutions
Doditsolutions Airbnb Clone Script: vulnerabilidades y CVE
Doditsolutions Airbnb Clone Script tiene 6 vulnerabilidades publicadas, 6 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses6
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-25494 | Alta (8.8) | 0.41% | — | 27 feb 2026 | Homey BNB V4 contains an SQL injection vulnerability in the administration panel login that allows unauthenticated attackers to bypass authentication by injecting SQL syntax into username and password fields. Attackers… |
| CVE-2019-25493 | Alta (8.8) | 0.33% | — | 27 feb 2026 | Homey BNB V4 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'val' parameter. Attackers can send GET requests to the… |
| CVE-2019-25492 | Alta (8.8) | 0.33% | — | 27 feb 2026 | Homey BNB V4 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'pt' parameter. Attackers can send GET requests to the… |
| CVE-2019-25491 | Alta (8.8) | 0.33% | — | 27 feb 2026 | Homey BNB V4 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the catid parameter. Attackers can send GET requests to the… |
| CVE-2019-25490 | Alta (8.8) | 0.33% | — | 27 feb 2026 | Homey BNB V4 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'id' parameter. Attackers can send GET requests to the… |
| CVE-2019-25489 | Alta (8.8) | 0.40% | — | 27 feb 2026 | Homey BNB V4 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the hosting_id parameter. Attackers can send GET requests to the… |