Access violation vulnerability in Booking for Appointments and Events Calendar – Amelia 1.2

The Amelia plugin for WordPress, which helps with booking appointments and events, has a security vulnerability in all versions up to 1.2. This is because the plugin uses Symfony and has display_errors turned on in test files. This can allow unauthorized individuals to find out the full path of the website, which could potentially be used for other attacks. However, this information alone is not enough to cause harm to a website and another vulnerability would be needed for an attack to be successful.

Detected in:

Booking for Appointments and Events Calendar – Amelia open vulnerable versions: >= * <= 1.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.