CVE-2022-41790: WordPress WP Time Slots Booking Form Plugin <= 1.1.76 is vulnerable to Broken Access Control
Published Jan 17, 2024
·Updated
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.1.76.
Affected Software
1 affected component
CodePeople Wp Time Slots Booking Form Wordpress<=1.1.76
Remediation
Information
Update to 1.1.77 or a higher version.
Event History
Jan 17, 2024
CVE Published
via MITRE·06:13 PM
Data Sourced
via MITRE·06:13 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-41790?
CVE-2022-41790 has a high severity level due to the missing authorization vulnerability.
2
How do I fix CVE-2022-41790?
To fix CVE-2022-41790, update the WP Time Slots Booking Form plugin to version 1.1.77 or later.
3
What specific component is affected by CVE-2022-41790?
CVE-2022-41790 specifically affects the CodePeople WP Time Slots Booking Form plugin version up to 1.1.76.
4
What type of vulnerability is CVE-2022-41790?
CVE-2022-41790 is classified as a Missing Authorization vulnerability.
5
Which software versions are impacted by CVE-2022-41790?
CVE-2022-41790 impacts all versions of the WP Time Slots Booking Form plugin from n/a to 1.1.76.