Input validation vulnerability in Tour Master – Tour Booking, Travel, Hotel 5.3.8

The Tourmaster plugin for WordPress has a security issue that affects versions 5.3.8 and below. This vulnerability allows attackers to access and run any files they want on the server without needing to be logged in. This can lead to unauthorized access, stealing important information, or even running harmful code. This can happen even if the files being uploaded are typically considered safe, like images.

Detected in:

Tour Master - Tour Booking, Travel, Hotel fixed vulnerable versions: >= * <= 5.3.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.