Salon booking system

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Salon Booking System 10.9.3

    Fixed

    The Salon Booking System plugin for WordPress has a security issue that allows malicious code to be added through the admin settings. This can be done by someone with high-level access, and it can ca...

    Read More
  • Access violation vulnerability in Salon Booking System 10.9

    Fixed

    The Salon Booking System plugin for WordPress has a security issue called Insecure Direct Object Reference. This means that anyone who is logged in and has at least subscriber-level access can do una...

    Read More
  • Input validation vulnerability in Salon Booking System 10.8.1

    Fixed

    The Salon Booking System plugin for WordPress has a security issue that affects all versions up to 10.8.1. This problem is caused by not properly checking the redirect url that is provided. This mean...

    Read More
  • Input validation vulnerability in Salon Booking System 10.7

    Fixed

    The Salon booking system plugin for WordPress has a weakness that allows hackers to access sensitive information from the database. This is because the plugin does not properly handle user input and ...

    Read More
  • Input validation vulnerability in Salon Booking System 10.2

    Fixed

    The Salon booking system plugin for WordPress has a security issue where anyone can upload any type of file without anyone checking it. This could allow someone who isn't authorized to upload harmful...

    Read More
  • Vulnerability found in Salon Booking System

    Fixed

    The Salon booking system plugin for WordPress has a security issue that could allow unauthorized users to access and change data. This is because a necessary check was not included in certain functio...

    Read More
  • Access violation vulnerability in Salon booking system 9.8

    Fixed

    The WordPress plugin called "Salon booking system" has a security issue that allows anyone to delete important files from the website, even if they are not logged in. This could lead to a takeover of...

    Read More
  • Input validation vulnerability in Salon booking system 9.6.5

    Fixed

    The Salon booking system plugin for WordPress has a security issue where unauthorized users can inject harmful code into the website. This can happen if the plugin is not properly protecting against ...

    Read More
  • Input validation vulnerability in Salon booking system 9.6.5

    Fixed

    The Salon booking system add-on for WordPress has a security issue that affects all versions up to 9.6.5. This is because the salon-settings page does not properly check for a special code called a n...

    Read More
  • Input validation vulnerability in Salon booking system 9.6.5

    Fixed

    The Salon booking system for WordPress has a security issue that allows hackers to inject their own code into emails. This can only be done by someone with certain permissions and it only affects cer...

    Read More
  • Input validation vulnerability in Salon booking system 9.6.2

    Fixed

    The Salon booking system add-on for WordPress has a security issue where someone can inject harmful code through the 'Mobile Phone' section. This can happen in all versions up to 9.6.2 because the ad...

    Read More
  • Input validation vulnerability in Salon booking system 9.6.2

    Fixed

    The booking system used for salons in WordPress can be easily hacked through a vulnerability called Stored Cross-Site Scripting. This is because the system does not properly check and filter the info...

    Read More
  • Input validation vulnerability in Salon booking system 9.5

    Fixed

    The Salon booking system plugin for WordPress has a security issue that allows anyone to upload any type of file onto the website. This can be done without needing to log in, and it puts the website ...

    Read More
  • Access violation vulnerability in Salon booking system 8.7

    Fixed

    The Salon booking system plugin for WordPress is not secure in all versions up to 8.7. If someone with editor-level access or higher uses the plugin, they may be able to gain administrator privileges...

    Read More
  • Input validation vulnerability in Salon booking system 8.4.7

    Fixed

    The Salon Booking System plugin for WordPress could be vulnerable to an attack called Cross-Site Request Forgery in versions 8.4.6 and earlier. This means that if a malicious user can trick an admini...

    Read More
  • Input validation vulnerability in Freemius SDK 2.5.9 (1072 components affected)

    Fixed

    The Freemius SDK for WordPress is vulnerable to an attack known as Reflected Cross-Site Scripting. This attack is possible because of insufficient security measures in versions of the Freemius SDK up ...

    Read More
  • Input validation vulnerability in Salon booking system 8.4.7

    Fixed

    The Salon Booking System plugin for WordPress is vulnerable to a security issue. If someone is using version 8.4.6 or earlier, attackers can use a special type of attack called Cross-Site Request For...

    Read More
  • Access violation vulnerability in Salon booking system 7.6.2

    Fixed

    The Salon Booking System WordPress plugin versions Free and Pro before 7.6.3 have a security vulnerability. This vulnerability could allow customers to view other customer's bookings and other data wi...

    Read More
  • Access violation vulnerability in Salon booking system 7.6.2

    Fixed

    The Salon booking system WordPress plugins versions before 7.6.3 had a security flaw that allowed any person who was not signed in to the system to search and view details of other people's bookings. ...

    Read More
  • Input validation vulnerability in Salon booking system 7.9

    Fixed

    The Salon booking system plugin for WordPress has a security flaw in versions up to 7.9. This flaw allows unauthenticated attackers to inject malicious web scripts into pages which could be executed i...

    Read More
  • Input validation vulnerability in Salon booking system 6.3.1

    Fixed

    A problem with the Salon booking system plugin on WordPress (versions before 6.3.1) allowed people with lower access levels

    Read More
  • Access violation vulnerability in Freemius SDK (620 components affected)

    Fixed

    Freemius, a software development kit used by hundreds of WordPress plugin and theme developers, had a security vulnerability in its older versions (up to and including 2.4.2). This vulnerability could...

    Read More