← Back to CVE List
CVE-2020-18102
Cross Site Scripting (XSS) in Hotels_Server v1.0 allows remote attackers to execute arbitrary code by injecting crafted commands the data fields in the component "/controller/publishHotel.php".
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt