RSS   Vulnerabilities for 'Appointment hour booking'   RSS

2021-10-11
 
CVE-2021-24712

CWE-79
 

 
The Appointment Hour Booking WordPress plugin before 1.3.17 does not properly sanitize values used when creating new calendars.

 
2021-10-04
 
CVE-2021-24673

CWE-79
 

 
The Appointment Hour Booking WordPress plugin before 1.3.16 does not escape some of the Calendar Form settings, allowing high privilege users to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

 
2019-07-11
 
CVE-2019-13505

CWE-79
 

 
The Appointment Hour Booking plugin 1.1.44 for WordPress allows XSS via the E-mail field, as demonstrated by email_1.

 

 >>> Vendor: Dwbooster 3 Products
Appointment hour booking
Corner ad
Calendar event multi view


Copyright 2021, cxsecurity.com

 

Back to Top