An issue was discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress. Multiple parameters allow remote attackers to manipulate the values to change data such as prices.
References
Link | Resource |
---|---|
https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e | Third Party Advisory |
https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e | Third Party Advisory |
Configurations
History
21 Nov 2024, 03:41
Type | Values Removed | Values Added |
---|---|---|
References | () https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e - Third Party Advisory |
Information
Published : 2018-06-13 18:29
Updated : 2024-11-21 03:41
NVD link : CVE-2018-10363
Mitre link : CVE-2018-10363
CVE.ORG link : CVE-2018-10363
JSON object : View
Products Affected
wpdevart
- booking_calendar
CWE
CWE-20
Improper Input Validation