First published: Fri May 17 2024(Updated: )
Improper Privilege Management vulnerability in SAASPROJECT Booking Package Booking Package allows Privilege Escalation.This issue affects Booking Package: from n/a through 1.5.98.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Booking Package | <=1.5.98 | |
WordPress Booking Package | <=1.5.98 |
Update to 1.5.99 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37389 is classified as a high severity vulnerability due to its potential for privilege escalation.
To fix CVE-2023-37389, update the SAASPROJECT Booking Package to the latest version beyond 1.5.98.
The impact of CVE-2023-37389 allows unauthorized users to escalate their privileges within the booking system.
Yes, CVE-2023-37389 affects the Booking Package version up to and including 1.5.98.
Users of the Booking Package plugin from SAASPROJECT and WordPress using version 1.5.98 or lower are affected by CVE-2023-37389.