CVE-2023-50841: WordPress BookingPress Plugin <= 1.0.72 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Repute Infosystems BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin.This issue affects BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin: from n/a through 1.0.72.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50841?
CVE-2023-50841 is classified as a high-severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2023-50841?
To fix CVE-2023-50841, you should immediately update the BookingPress plugin to the latest version beyond 1.0.72.
What types of attacks can CVE-2023-50841 expose my site to?
CVE-2023-50841 can expose your site to SQL injection attacks, allowing attackers to manipulate your database.
Which WordPress versions are affected by CVE-2023-50841?
CVE-2023-50841 affects the BookingPress plugin version 1.0.72 and earlier.
Is CVE-2023-50841 specific to certain installations?
CVE-2023-50841 is specific to installations of the BookingPress plugin by Repute Infosystems on WordPress.