CVE-2016-10908: XSS
Published Aug 21, 2019
·Updated
The booking-calendar-contact-form plugin before 1.0.24 for WordPress has XSS.
Affected Software
1 affected component
CodePeople Booking Calendar Contact Form Wordpress<1.0.24
Event History
Aug 21, 2019
CVE Published
via MITRE·12:40 PM
Data Sourced
via MITRE·12:40 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10908?
The severity of CVE-2016-10908 is classified as medium due to its potential for Cross-Site Scripting (XSS) attacks.
2
How do I fix CVE-2016-10908?
To fix CVE-2016-10908, update the booking-calendar-contact-form plugin to version 1.0.24 or later.
3
What kind of vulnerability is CVE-2016-10908?
CVE-2016-10908 is a Cross-Site Scripting (XSS) vulnerability affecting the booking-calendar-contact-form plugin.
4
Which versions of the booking-calendar-contact-form plugin are affected by CVE-2016-10908?
Versions of the booking-calendar-contact-form plugin prior to 1.0.24 are affected by CVE-2016-10908.
5
In which application is CVE-2016-10908 found?
CVE-2016-10908 is found in the booking-calendar-contact-form plugin for WordPress.