CVE-2025-44203

HIGH

Digitaldruid Hoteldruid - Error Information Exposure

Title source: rule

Description

In HotelDruid 3.0.7, an unauthenticated attacker can exploit verbose SQL error messages on creadb.php before the 'create database' button is pressed. By sending malformed POST requests to this endpoint, the attacker may obtain the administrator username, password hash, and salt. In some cases, the attack results in a Denial of Service (DoS), preventing the administrator from logging in even with the correct credentials.

Exploits (1)

nomisec WORKING POC
by IvanT7D3 · poc
https://github.com/IvanT7D3/CVE-2025-44203

Scores

CVSS v3 7.5
EPSS 0.0008
EPSS Percentile 23.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-400 CWE-209
Status published
Products (2)
digitaldruid/hoteldruid 3.0.0
digitaldruid/hoteldruid 3.0.7
Published Jun 20, 2025
Tracked Since Feb 18, 2026