Access violation vulnerability in VikBooking Hotel Booking Engine & PMS 1.5.3

E4J s.r.l. VikBooking Hotel Booking Engine & PMS plugin (version 1.5.3 or earlier) on WordPress has a security issue that could let attackers access booking data. They can do this by guessing or using brute force to figure out easy to predict booking IDs with search POST requests.

Detected in:

VikBooking Hotel Booking Engine & PMS fixed vulnerable versions: >= * <= 1.5.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.