📦 Bookingpress

by Reputeinfosystems

🔍 What is Bookingpress?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-6467

HIGH CVSS 8.8 Jul 17, 2024

This vulnerability in the BookingPress WordPress plugin allows authenticated attackers with Subscriber-level access or higher to read arbitrary files from the server and create new files containing th...

CVE-2024-3022

HIGH CVSS 7.2 Apr 4, 2024

The BookingPress WordPress plugin allows authenticated administrators to upload arbitrary files due to insufficient filename validation. This vulnerability enables remote code execution on affected Wo...

CVE-2023-6219

HIGH CVSS 7.2 Nov 28, 2023

The BookingPress WordPress plugin up to version 1.0.76 contains an arbitrary file upload vulnerability in the 'bookingpress_process_upload' function due to insufficient file validation. This allows au...

CVE-2024-10540

MEDIUM CVSS 5.3 Nov 2, 2024

This SQL injection vulnerability in the BookingPress WordPress plugin allows authenticated attackers with Subscriber-level access or higher to inject malicious SQL queries through the 'service' parame...

CVE-2024-34799

MEDIUM CVSS 6.5 Jun 11, 2024

This CVE describes a Missing Authorization vulnerability in the BookingPress WordPress plugin that allows unauthenticated users to manipulate appointment durations. This affects all WordPress sites ru...