Back to Database
Status published
Medium
CVE-2015-4713
SQL injection vulnerability in ApPHP Hotel Site 3.x.x allows remote...
Vulnerability Description
SQL injection vulnerability in ApPHP Hotel Site 3.x.x allows remote editors to execute arbitrary SQL commands via the pid parameter to index.php.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2015-4713
Credits & Attribution
No credits recorded in the NVD database.
References
More from apphp
View All →CVE-2010-4881
Multiple cross-site request forgery (CSRF) vulnerabilities in calendar.class.php in ApPHP...
Medium
6.8
CVE-2010-4880
Multiple cross-site scripting (XSS) vulnerabilities in calendar.class.php in ApPHP Calendar...
Medium
4.3
CVE-2010-3481
Multiple SQL injection vulnerabilities in login.php in ApPHP PHP MicroCMS...
Medium
6.8
CVE-2010-3480
Directory traversal vulnerability in index.php in ApPHP PHP MicroCMS 1.0.1,...
Medium
6.8
Affected Vendor
apphp
View all reports →Affected Software
hotel site
Vulnerable Versions:
3.0.9, 3.1.3, 3.2.4, 3.3.0, 3.4.4, 3.5.1, 3.6.1, 3.7.5, 3.8.4, 3.9.1
Timeline
Official Publish:
June 22nd, 2015
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.