The component controlla_login function in HotelDruid Hotel Management Software v3.0.3 generates a predictable session token, allowing attackers to bypass authentication via bruteforce attacks.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
https://www.hoteldruid.com/ | product vendor advisory |
https://github.com/dhammon/Security | broken link |
https://github.com/dhammon/HotelDruid-CVE-2021-42949 | third party advisory |