CVE-2018-10363

An issue was discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress. Multiple parameters allow remote attackers to manipulate the values to change data such as prices.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpdevart:booking_calendar:2.2.2:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 03:41

Type Values Removed Values Added
References () https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e - Third Party Advisory () https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e - Third Party Advisory

Information

Published : 2018-06-13 18:29

Updated : 2024-11-21 03:41


NVD link : CVE-2018-10363

Mitre link : CVE-2018-10363

CVE.ORG link : CVE-2018-10363


JSON object : View

Products Affected

wpdevart

  • booking_calendar
CWE
CWE-20

Improper Input Validation