The Appointment Hour Booking plugin 1.1.44 for WordPress allows XSS via the E-mail field, as demonstrated by email_1.
References
Link | Resource |
---|---|
https://github.com/ivoschyk-cs/CVE-s/blob/master/Appointment%20Hour%20Booking%20%E2%80%93%20WordPress%20Booking%20Plugin%20--%20stored%20XSS | Third Party Advisory |
https://wordpress.org/plugins/appointment-hour-booking/#developers | Release Notes Third Party Advisory |
https://wpvulndb.com/vulnerabilities/9458 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-07-11T12:26:29
Updated: 2019-07-16T08:06:01
Reserved: 2019-07-11T00:00:00
Link: CVE-2019-13505
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-07-11T13:15:11.103
Modified: 2023-01-30T18:28:09.627
Link: CVE-2019-13505
JSON object: View
Redhat Information
No data.
CWE