Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in hotel_tiempolibre_ext.php in Venalsur Booking Centre Booking System for Hotels Group, when magic_quotes_gpc is enabled, allows remote attackers to execute arbitrary SQL commands via the NoticiaID parameter and other unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Booking Centre Booking System SQL注入漏洞
Vulnerability Description
Venalsur Booking Centre Booking System是Venalsur公司为酒店业,休闲,旅行社和旅游公司景点部门提供全球性和专业解决方案。 Hotels Group的Venalsur Booking Centre Booking System中的hotel_tiempolibre_ext.php存在SQL注入漏洞。当启用magic_quotes_gpc时,远程攻击者可以借助NoticiaID参数和其他未明向量,导致执行任意SQL指令。
CVSS Information
N/A
Vulnerability Type
N/A