Input validation vulnerability in WP Hotel Booking 2.1.4

The WP Hotel Booking plugin used on WordPress websites may have a security issue that could allow unauthorized access to sensitive information or allow malicious code to be executed. This vulnerability affects versions 2.1.4 and below, and can be exploited by users with contributor-level access or higher. It allows them to include and run any files on the server, including PHP files, which can lead to bypassing security measures and gaining access to confidential data. This can happen even if the uploaded files are typically considered safe, such as images.

Detected in:

WP Hotel Booking open vulnerable versions: >= * <= 2.1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.