216.73.217.22

CVE-2023-51302

· Published 19/02/2025 21:15 · Modified 20/02/2025 15:15

Labels: CVE-2023-51302 2025-02-19CVE-2023-51302CWE-1236[email protected]

Essential information

Published
19/02/2025 21:15
Modified
20/02/2025 15:15
Author
Creator
CVSS
8.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS metrics

Description

PHPJabbers Hotel Booking System v4.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References