CVE-2022-47428: WordPress Booking calendar, Appointment Booking System plugin <= 3.2.7 - SQL Injection
A vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar.This issue affects Booking calendar, Appointment Booking System: from n/a through <= 3.2.7.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-47428?
CVE-2022-47428 is a SQL Injection vulnerability in the WpDevArt Booking calendar, Appointment Booking System plugin for WordPress.
How severe is CVE-2022-47428?
CVE-2022-47428 has a severity rating of 9.8, which is considered critical.
How does CVE-2022-47428 affect the Booking calendar, Appointment Booking System plugin?
CVE-2022-47428 allows SQL Injection attacks on the Booking calendar, Appointment Booking System plugin.
Which version of the Booking calendar, Appointment Booking System plugin is affected by CVE-2022-47428?
Versions up to and including 3.2.7 of the Booking calendar, Appointment Booking System plugin are affected by CVE-2022-47428.
Is there a patch or fix available for CVE-2022-47428?
Yes, a patch or fix is available for CVE-2022-47428. Please refer to the following link for more information: [link](https://patchstack.com/database/vulnerability/booking-calendar/wordpress-booking-calendar-appointment-booking-system-plugin-3-2-6-sql-injection?_s_id=cve)