Input validation vulnerability in Easy Appointments 1.1.4

The Easy Appointments plugin for WordPress is not secure in versions up to 3.11.9. This means that unauthenticated attackers can change the plugin settings without being authorized to do so. All an attacker needs to do is to trick an administrator into clicking on a link. This is possible because the plugin does not have the correct protection to prevent this type of attack.

Detected in:

Easy Appointments fixed vulnerable versions: >= * <= 3.11.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.