AMTT Hotel Broadband Operation System (HiBOS) V3.0.3.151204 and before is vulnerable to SQL Injection via /manager/card/card_detail.php.
References
| Link | Resource |
|---|---|
| https://gist.github.com/lidy4x1/3314fbd82c3d72831c16f9c47a9bfb11 | Third Party Advisory |
| https://www.amttgroup.com/ | Product |
Configurations
History
17 Oct 2025, 17:03
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Amttgroup hibos
|
|
| CPE | cpe:2.3:a:amttgroup:hibos:*:*:*:*:*:*:*:* |
30 Sep 2025, 19:02
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Amttgroup hotel Broadband Operating System
Amttgroup |
|
| References | () https://gist.github.com/lidy4x1/3314fbd82c3d72831c16f9c47a9bfb11 - Third Party Advisory | |
| References | () https://www.amttgroup.com/ - Product | |
| Summary |
|
|
| CPE | cpe:2.3:a:amttgroup:hotel_broadband_operating_system:*:*:*:*:*:*:*:* |
12 Aug 2024, 14:35
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-79 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
12 Aug 2024, 13:41
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-08-12 13:38
Updated : 2025-10-17 17:13
NVD link : CVE-2024-41476
Mitre link : CVE-2024-41476
CVE.ORG link : CVE-2024-41476
JSON object : View
Products Affected
amttgroup
- hibos
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
