CVE-2022-36254

Publication date

2022-09-12 03:04:08

Family

mitre

State

PUBLISHED

Description

Multiple persistent cross-site scripting (XSS) vulnerabilities in index.php in tramyardg Hotel Management System 1.0 allow remote attackers to inject arbitrary web script or HTML via multiple parameters such as "fullname".