High severity7.5NVD Advisory· Published Feb 19, 2025· Updated Jun 17, 2026
CVE-2023-51301
CVE-2023-51301
Description
A lack of rate limiting in the "Login Section, Forgot Email" feature of PHPJabbers Hotel Booking System v4.0 allows attackers to send an excessive amount of reset requests for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:phpjabbers:hotel_booking_system:4.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:phpjabbers:hotel_booking_system:4.0:*:*:*:*:*:*:*
- (no CPE)range: =4.0
- PHPJabbers/Hotel Booking Systemdescription
Patches
Vulnerability mechanics
References
3- packetstorm.news/files/id/176486nvdExploitThird Party AdvisoryVDB Entry
- www.phpjabbers.com/hotel-booking-system/nvdProduct
- packetstormsecurity.com/files/176486/PHPJabbers-Hotel-Booking-System-4.0-Missing-Rate-Limiting.htmlnvd
News mentions
0No linked articles in our index yet.