First published: Fri Jul 08 2011(Updated: )
SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bestsoftinc Advance Hotel Booking System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4814 is considered a high severity vulnerability due to its potential for remote SQL injection attacks.
To fix CVE-2010-4814, sanitize and validate user inputs in the index1.php file to prevent SQL injection.
CVE-2010-4814 affects Best Soft Inc. Advance Hotel Booking System version 1.0.
Yes, CVE-2010-4814 can be exploited remotely by attackers to execute arbitrary SQL commands.
If you are using Best Soft Inc. Advance Hotel Booking System 1.0, you should apply security patches and implement input validation to mitigate CVE-2010-4814.