📦 Vikrentcar

by E4jconnect

🔍 What is Vikrentcar?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-39653

CRITICAL CVSS 9.3 Aug 29, 2024

This SQL injection vulnerability in the VikRentCar WordPress plugin allows attackers to execute arbitrary SQL commands on the database. All WordPress sites running VikRentCar version 1.4.0 or earlier ...

CVE-2025-5322

HIGH CVSS 7.2 Jul 3, 2025

The VikRentCar WordPress plugin up to version 1.4.3 allows authenticated administrators to upload arbitrary files due to missing file type validation. This vulnerability can lead to remote code execut...

CVE-2024-11640

HIGH CVSS 8.8 Mar 8, 2025

The VikRentCar WordPress plugin has a CSRF vulnerability that allows attackers to escalate privileges and upload arbitrary files. Attackers can trick administrators into clicking malicious links to ex...