Input validation vulnerability in Eventer – WordPress Event & Booking Manager Plugin 3.9.8

The Eventer plugin for WordPress has a security issue called SQL Injection, where attackers can insert malicious code into the plugin. This can happen when the ‘event’ parameter in the ‘eventer_get_attendees’ function is used. This vulnerability affects all versions of the plugin up to and including 3.9.8. This can allow hackers to access sensitive information from the database without being authenticated.

Detected in:

Eventer - WordPress Event & Booking Manager Plugin open vulnerable versions: >= * <= 3.9.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.