Логотип exploitDog
bind:CVE-2022-4340
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4340

Количество 2

Количество 2

nvd логотип

CVE-2022-4340

около 3 лет назад

The BookingPress WordPress plugin before 1.0.31 suffers from an Insecure Direct Object Reference (IDOR) vulnerability in it's thank you page, allowing any visitor to display information about any booking, including full name, date, time and service booked, by manipulating the appointment_id query parameter.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-7j9f-fw49-x4p8

около 3 лет назад

The BookingPress WordPress plugin before 1.0.31 suffers from an Insecure Direct Object Reference (IDOR) vulnerability in it's thank you page, allowing any visitor to display information about any booking, including full name, date, time and service booked, by manipulating the appointment_id query parameter.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-4340

The BookingPress WordPress plugin before 1.0.31 suffers from an Insecure Direct Object Reference (IDOR) vulnerability in it's thank you page, allowing any visitor to display information about any booking, including full name, date, time and service booked, by manipulating the appointment_id query parameter.

CVSS3: 5.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-7j9f-fw49-x4p8

The BookingPress WordPress plugin before 1.0.31 suffers from an Insecure Direct Object Reference (IDOR) vulnerability in it's thank you page, allowing any visitor to display information about any booking, including full name, date, time and service booked, by manipulating the appointment_id query parameter.

CVSS3: 5.3
0%
Низкий
около 3 лет назад

Уязвимостей на страницу