CVE-2018-13063: High severity easy!appointments vulnerability
Published Mar 16, 2020
·Updated
Easy!Appointments 1.3.0 has a Missing Authorization issue allowing retrieval of hashed passwords and salts.
Affected Software
2 affected components
EasyAppointments Easy\!appointments Wordpress<1.2.1
EasyAppointments Easy\!appointments Wordpress=1.3.0
Event History
Mar 16, 2020
CVE Published
via MITRE·02:36 PM
Data Sourced
via MITRE·02:36 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-13063.
2
What is the severity level of CVE-2018-13063?
The severity level of CVE-2018-13063 is high with a score of 7.5.
3
What is the affected software for CVE-2018-13063?
The affected software for CVE-2018-13063 is Easy!Appointments version 1.3.0 and below.
4
What is the description of CVE-2018-13063?
CVE-2018-13063 is a Missing Authorization issue in Easy!Appointments 1.3.0, allowing retrieval of hashed passwords and salts.
5
How can I fix CVE-2018-13063?
To fix CVE-2018-13063, it is recommended to update Easy!Appointments to a version higher than 1.3.0.