CVE-2008-3266
SoftAcid HRS Multi - SQL Injection
Title source: llmDescription
SQL injection vulnerability in picture_pic_bv.asp in SoftAcid Hotel Reservation System (HRS) Multi allows remote attackers to execute arbitrary SQL commands via the key parameter.
Exploits (1)
References (6)
Scores
EPSS
0.0090
EPSS Percentile
75.7%
Details
CWE
CWE-89
Status
published
Products (1)
softacid/hotel_reservation_system_multi
Published
Jul 24, 2008
Tracked Since
Feb 18, 2026