An issue in HotelDruid version 3.0.7 and earlier allows users to set weak passwords due to the lack of enforcement of password strength policies.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.huyvo.net/post/cve-2025-25749-weak-password-policy-in-hoteldruid-3-0-7 | Exploit Mitigation Third Party Advisory | 
Configurations
                    History
                    07 Apr 2025, 14:06
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://www.huyvo.net/post/cve-2025-25749-weak-password-policy-in-hoteldruid-3-0-7 - Exploit, Mitigation, Third Party Advisory | |
| First Time | Digitaldruid hoteldruid Digitaldruid | |
| CPE | cpe:2.3:a:digitaldruid:hoteldruid:*:*:*:*:*:*:*:* | 
24 Mar 2025, 18:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-521 | |
| Summary | 
 | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.1 | 
11 Mar 2025, 18:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-03-11 18:15
Updated : 2025-04-07 14:06
NVD link : CVE-2025-25749
Mitre link : CVE-2025-25749
CVE.ORG link : CVE-2025-25749
JSON object : View
Products Affected
                digitaldruid
- hoteldruid
CWE
                
                    
                        
                        CWE-521
                        
            Weak Password Requirements
