CVE-2018-17842: Scriptzee Hotel Booking Engine

Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.

SQL injection exists in Scriptzee Hotel Booking Engine 1.0 via the hotels h_room_type parameter.

Affected products

  • Scriptzee Hotel Booking Engine: version 1.0 only

Published 2019-06-19. Last modified 2026-06-17.