CVE-2008-4204

N/A Unknown
Published: September 24, 2008 Modified: April 23, 2026
View on NVD

Description

SQL injection vulnerability in city.asp in SoftAcid Hotel Reservation System (HRS) allows remote attackers to execute arbitrary SQL commands via the city parameter.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.securityfocus.com/bid/31211
Source: cve@mitre.org
Exploit
http://securityreason.com/securityalert/4308
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/31211
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/45190
Source: af854a3a-2127-422b-91ae-364da2661108
https://www.exploit-db.com/exploits/6470
Source: af854a3a-2127-422b-91ae-364da2661108

8 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

softacid