Phpjabbers
Phpjabbers Hotel Booking System: vulnerabilidades y CVE
Phpjabbers Hotel Booking System tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-51302 | Alta (8.8) | 0.61% | — | 19 feb 2025 | PHPJabbers Hotel Booking System v4.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section… |
| CVE-2023-51301 | Alta (7.5) | 0.75% | — | 19 feb 2025 | A lack of rate limiting in the "Login Section, Forgot Email" feature of PHPJabbers Hotel Booking System v4.0 allows attackers to send an excessive amount of reset requests for a legitimate user, leading to a possible… |
| CVE-2023-51300 | Media (6.1) | 0.39% | — | 19 feb 2025 | PHPJabbers Hotel Booking System v4.0 is vulnerable to Cross-Site Scripting (XSS) vulnerabilities in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters. |
| CVE-2023-51299 | Media (6.1) | 0.39% | — | 19 feb 2025 | PHPJabbers Hotel Booking System v4.0 is vulnerable to HTML Injection in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters. |
| CVE-2023-51297 | Media (6.5) | 0.55% | — | 19 feb 2025 | A lack of rate limiting in the 'Email Settings' feature of PHPJabbers Hotel Booking System v4.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS)… |
| CVE-2023-40760 | Crítica (9.8) | 0.89% | — | 28 ago 2023 | User enumeration is found in PHP Jabbers Hotel Booking System v4.0. This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Phpjabbers
Cleaning Business Software · 9Time Slots Booking Calendar · 9Appointment Scheduler · 8Cinema Booking System · 8Availability Booking Calendar · 8CAR Rental Script · 7Event Booking Calendar · 7Fundraising Script · 7Document Creator · 5CAR Park Booking System · 5Callback Widget · 5BUS Reservation System · 5