Логотип exploitDog
bind:CVE-2024-7129
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-7129

Количество 2

Количество 2

nvd логотип

CVE-2024-7129

больше 1 года назад

The Appointment Booking Calendar WordPress plugin before 1.6.7.43 does not escape template syntax provided via user input, leading to Twig Template Injection which further exploited can result to remote code Execution by high privilege such as admins

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-m8mp-83qq-7j4f

больше 1 года назад

The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin WordPress plugin before 1.6.7.43 does not escape template syntax provided via user input, leading to Twig Template Injection which further exploited can result to remote code Execution by high privilege such as admins

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-7129

The Appointment Booking Calendar WordPress plugin before 1.6.7.43 does not escape template syntax provided via user input, leading to Twig Template Injection which further exploited can result to remote code Execution by high privilege such as admins

CVSS3: 7.2
16%
Средний
больше 1 года назад
github логотип
GHSA-m8mp-83qq-7j4f

The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin WordPress plugin before 1.6.7.43 does not escape template syntax provided via user input, leading to Twig Template Injection which further exploited can result to remote code Execution by high privilege such as admins

CVSS3: 8.8
16%
Средний
больше 1 года назад

Уязвимостей на страницу