An issue was discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress. Multiple parameters allow remote attackers to manipulate the values to change data such as prices.
References
Link | Resource |
---|---|
https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e | Third Party Advisory |
Configurations
Information
Published : 2018-06-13 11:29
Updated : 2018-08-09 11:45
NVD link : CVE-2018-10363
Mitre link : CVE-2018-10363
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
wpdevart
- booking_calendar