Input validation vulnerability in Booking Package 1.6.01

The Booking Package plugin for WordPress is not secure in versions up to 1.6.01. This plugin allows unauthenticated attackers to inject malicious web scripts into pages on the website. The malicious scripts can be executed if the user can be tricked into taking an action such as clicking on a link.

Detected in:

Booking Package – Appointment Booking Calendar System fixed vulnerable versions: >= * <= 1.6.01
Booking Package – Online Booking System fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.