Booking calendar, Appointment Booking System

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in WP Booking Calendar 10.11.1

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that allows attackers to inject harmful code into pages. This is possible because the plugin does not properly filter out dangerous c...

    Read More
  • Access violation vulnerability in WP Booking Calendar 10.10

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that affects all versions up to 10.10. This means that anyone, even without an account, can change their booking after it has been co...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.9.2

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that can allow malicious code to be injected into web pages. This can happen when a user with certain levels of access uses the plugi...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.19

    Fixed

    The Booking Calendar and Booking Calendar Pro plugins used on WordPress websites have a security issue that could allow hackers to inject harmful code through a specific parameter called 'calendar_id...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.19

    Fixed

    A popular plugin called "Booking Calendar WpDevArt" has a security vulnerability that allows hackers to access sensitive information, like passwords, from the database. This happens when a specific t...

    Read More
  • Access violation vulnerability in Booking calendar, Appointment Booking System 3.2.3

    Fixed

    The Appointment Booking System plugin for WordPress, known as the Booking calendar, has a security vulnerability that could allow unauthorized access. This is because a function in all versions, up t...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.6.4

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that could allow unauthorized code to be inserted into certain pages. This can happen when someone with administrator or higher permi...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.15

    Fixed

    The Booking calendar and Appointment Booking System plugin for WordPress has a security vulnerability that allows attackers to insert harmful code through SVG file uploads. This can affect all versio...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.6.2

    Fixed

    The WP Booking Calendar tool used for WordPress has a security flaw where hackers can insert harmful code through the admin settings. This can only happen if the attacker has high-level access and is...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.6

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that could allow hackers to insert harmful code into certain pages. This can happen if the website administrator has not properly fil...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.5

    Fixed

    A popular tool called WP Booking Calendar, used on WordPress websites, has a security vulnerability called Reflected Cross-Site Scripting. This means that attackers can add harmful code to a website ...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.2.1

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that allows attackers to inject harmful code into website pages. This can happen because the plugin does not properly clean and prote...

    Read More
  • Vulnerability found in Booking calendar, Appointment Booking System

    Fixed

    A plugin called "Booking calendar, Appointment Booking System" for the website platform WordPress has a security issue that affects all versions up to 3.2.3. This means that people who are not logged...

    Read More
  • Input validation vulnerability in WP Booking Calendar 9.9

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue called SQL Injection, which can happen in all versions up to 9.9. This happens because the plugin does not properly protect informati...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.11

    Fixed

    The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to a type of attack called SQL Injection. This attack affects all versions up to, and including, 3.2.11. With this ...

    Read More
  • Input validation vulnerability in Booking Calendar 9.7.4

    Fixed

    The Booking Calendar plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This kind of attack is possible because the plugin does not properly check and protect ...

    Read More
  • Input validation vulnerability in Booking Calendar 9.7.3

    Fixed

    The Booking Calendar plugin for WordPress released an update which fixes a security vulnerability. This vulnerability allows malicious attackers to inject arbitrary web scripts into pages viewed by u...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.9

    Fixed

    The Booking Calendar plugin for WordPress is vulnerable to a type of cyber attack known as SQL Injection. This plugin has a search function that, if exploited, allows people with certain privileges o...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.3

    Fixed

    The Booking calendar plugin for WordPress has a security issue in versions up to 3.2.3. This issue makes it so that people who are not authorized can manipulate bookings. This is because the plugin fa...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.3

    Fixed

    The Booking Calendar plugin for WordPress has a security issue that could let an attacker with editor-level permissions or higher to put malicious web scripts into pages that would run when someone vi...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 2.1.8

    Fixed

    A security vulnerability was found in the booking-calendar plugin version 2.1.7 for WordPress websites. This vulnerability could allow someone to perform malicious activities on your website without y...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 2.2.2

    Fixed

    A security issue was found in a WordPress plugin called ""Booking Calendar

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.1

    Fixed

    The Booking Calendar Appointment Booking System plugin for WordPress has a security issue that could allow unauthenticated attackers to upload malicious files to the server hosting the plugin. This is...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 3.2.6

    Fixed

    The Booking Calendar Appointment Booking System plugin for WordPress is potentially unsafe. Its versions 3.2.6 and below have a problem with user supplied parameters not being escaped correctly

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 2.1.8

    Fixed

    A security problem was found in the booking-calendar plugin version 2.1.7 for WordPress websites. An attacker can use the extra_field1[items][field_item1][price_percent] parameter in the wp-admin/admi...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 2.1.8

    Fixed

    A security problem was found in the booking-calendar plugin version 2.1.7 for WordPress websites. Someone can use this plugin to gain access to your website by using a special code in the form_field5[...

    Read More
  • Input validation vulnerability in Booking calendar, Appointment Booking System 2.1.8

    Fixed

    A security problem was found in the booking-calendar plugin version 2.1.7 for WordPress. This could allow someone to insert malicious code into the website through the wp-admin/admin.php sale_conditio...

    Read More
  • Input validation vulnerability in Booking Calendar 4.1.6

    Fixed

    The Booking Calendar plugin for WordPress has a security issue where attackers can make changes to the calendar without permission. This can be done by tricking a site administrator into clicking on ...

    Read More
  • Input validation vulnerability in Booking Calendar 6.2.1

    Fixed

    The Booking Calendar plugin for WordPress has a vulnerability that could allow people with Editor-level access to the plugin to extract sensitive information from the database due to a lack of securi...

    Read More
  • Input validation vulnerability in Booking Calendar 6.2.1

    Fixed

    The Booking Calendar plugin for WordPress is potentially vulnerable to a type of attack called Cross-Site Request Forgery. This vulnerability affects versions of the plugin up to and including versio...

    Read More
  • Input validation vulnerability in Booking Calendar 8.9.1

    Fixed

    (XSS) vulnerability

    Read More
  • Input validation vulnerability in Booking Calendar 9.2.1

    Fixed

    The Booking Calendar plugin for WordPress had a security vulnerability in versions up to and including 9.2.1. An attacker who could get a site administrator to click on a link could use this vulnerabi...

    Read More
  • Input validation vulnerability in Booking Calendar 8.4.3

    Fixed

    The Booking Calendar plugin version 8.4.3 for WordPress has a security issue which could allow someone who is not authorized to access the website to run certain commands. These commands could allow t...

    Read More
  • Input validation vulnerability in Booking Calendar 6.2.1

    Fixed

    The Booking Calendar plugin for WordPress has a security vulnerability in versions 6.2 and earlier. This vulnerability is caused by the incorrect or missing validation of nonce in the plugin's Import...

    Read More
  • Input validation vulnerability in Booking Calendar 9.4.2

    Fixed

    The Booking Calendar plugin for WordPress

    Read More
  • Output validation vulnerability in Booking Calendar 9.1

    Fixed

    The Booking Calendar plugin for WordPress is not secure in versions up to

    Read More