Booking Calendar <= 6.2 - SQL Injection
Affects Plugin
fixed in version 6.2.1
|
References
EXPLOITDB | 40189 |
URL | http://seclists.org/fulldisclosure/2016/Aug/1 |
URL | https://sumofpwn.nl/advisory/2016/sql_injection_vulnerability_in_booking_calendar_wordpress_plugin.html |
Classification
Type | SQLI |
OWASP Top 10 | A1: Injection |
CWE | CWE-89 |
Miscellaneous
Submitter | ethicalhack3r |
Submitter Website | https://dewhurstsecurity.com/ |
Submitter Twitter | ethicalhack3r |
Views | 1963 |
Verified | No |
WPVDB ID | 8576 |
Timeline
Publicly Published | 2016-08-01 (over 2 years ago) |
Added | 2016-08-01 (over 2 years ago) |
Last Updated | 2016-08-08 (over 2 years ago) |
Copyright & License
Copyright | All data and resources contained within this page and this web site is Copyright © The WPScan Team. |
License | Some of this data may be used for non-commercial purposes, however, any potential commercial usage of this data will require a license. If you would like to inquire about a commercial license please contact us. |