cleantalk
Vulnerabilities and Security Researches

Hotel Booking, CVE-2019-15774

CVE, Research URL

CVE-2019-15774

Application

Hotel Booking

Published on
Aug 29, 2019
Research Description
The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
Affected versions
Min -, max 2.5.
Status
vulnerable