HotelDruid 2.3.0 contains a cross-site scripting vulnerability affecting nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.
id: CVE-2019-8937
info:
name: HotelDruid 2.3.0 - Cross-Site Scripting
author: LogicalHunter
s
...