VYPR
Medium severity5.4NVD Advisory· Published Sep 12, 2022· Updated Jun 17, 2026

CVE-2022-36254

CVE-2022-36254

Description

Multiple persistent cross-site scripting (XSS) vulnerabilities in index.php in tramyardg Hotel Management System 1.0 allow remote attackers to inject arbitrary web script or HTML via multiple parameters such as "fullname".

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.