Логотип exploitDog
bind:CVE-2023-1129
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-1129

Количество 2

Количество 2

nvd логотип

CVE-2023-1129

почти 3 года назад

The WP FEvents Book WordPress plugin through 0.46 does not ensures that bookings to be updated belong to the user making the request, allowing any authenticated user to book, add notes, or cancel booking on behalf of other users.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-c29f-jm2c-8vv7

почти 3 года назад

The WP FEvents Book WordPress plugin through 0.46 does not ensures that bookings to be updated belong to the user making the request, allowing any authenticated user to book, add notes, or cancel booking on behalf of other users.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-1129

The WP FEvents Book WordPress plugin through 0.46 does not ensures that bookings to be updated belong to the user making the request, allowing any authenticated user to book, add notes, or cancel booking on behalf of other users.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-c29f-jm2c-8vv7

The WP FEvents Book WordPress plugin through 0.46 does not ensures that bookings to be updated belong to the user making the request, allowing any authenticated user to book, add notes, or cancel booking on behalf of other users.

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу