SQL Injection Vulnerability in HotelDruid by HotelDruid
CVE-2019-9087
9.8CRITICAL
What is CVE-2019-9087?
HotelDruid versions earlier than 2.3.1 are susceptible to a SQL Injection vulnerability that can be exploited through the 'numtariffa1' parameter in the /tab_tariffe.php file, potentially allowing unauthorized access to the database and manipulation of sensitive information.
