CVE-2018-10363: Input Validation
An issue was discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress. Multiple parameters allow remote attackers to manipulate the values to change data such as prices.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-10363?
CVE-2018-10363 refers to an issue discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress, where multiple parameters can be manipulated by remote attackers to change data such as prices.
How severe is CVE-2018-10363?
CVE-2018-10363 has a severity rating of 7.5 (high).
What software is affected by CVE-2018-10363?
The WpDevArt "Booking calendar, Appointment Booking System" plugin version 2.2.2 for WordPress is affected by CVE-2018-10363.
Is there a fix available for CVE-2018-10363?
At the moment, no specific fix has been mentioned for CVE-2018-10363. It is recommended to stay updated with the latest version of the plugin and follow any instructions provided by the vendor.
Where can I find more information about CVE-2018-10363?
More information about CVE-2018-10363 can be found at the following reference: https://gist.github.com/B0UG/68d3161af0c0ec85c615ca7452f9755e.