1 results (0.002 seconds)
CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 4

CVE-2010-4814 – BSI Advance Hotel Booking System 1.0 - SQL Injection
https://notcve.org/view.php?id=CVE-2010-4814
08 Jul 2011 — SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter. Vulnerabilidad de inyección SQL en index1.php en Best Soft Inc. (BSI) Advance Hotel Booking System v1.0 permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro "page". • https://www.exploit-db.com/exploits/15531 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •