CVE-2023-50852: WordPress BookIt Plugin <= 2.4.3 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Booking Calendar | Appointment Booking | BookIt.This issue affects Booking Calendar | Appointment Booking | BookIt: from n/a through 2.4.3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50852?
CVE-2023-50852 has a high severity level due to its SQL injection vulnerability.
How do I fix CVE-2023-50852?
To fix CVE-2023-50852, update the Booking Calendar | Appointment Booking | BookIt plugin to version 2.4.4 or later.
Which versions of Booking Calendar | Appointment Booking | BookIt are affected by CVE-2023-50852?
CVE-2023-50852 affects Booking Calendar | Appointment Booking | BookIt versions from n/a through 2.4.3.
What is SQL injection in the context of CVE-2023-50852?
SQL injection in CVE-2023-50852 refers to improper neutralization of special elements used in SQL commands that could allow attackers to manipulate the database.
How can I identify if I'm vulnerable to CVE-2023-50852?
You can identify vulnerability to CVE-2023-50852 by checking if you are using Booking Calendar | Appointment Booking | BookIt plugin version 2.4.3 or earlier.