CVE-2021-42949
Description
The component controlla_login function in HotelDruid Hotel Management Software v3.0.3 generates a predictable session token, allowing attackers to bypass authentication via bruteforce attacks.
References
Broken Link
Third Party Advisory
ProductVendor Advisory
CvssV3 impact
Could not find any metrics
CvssV2 impact
Could not find any metrics