First published: Fri Mar 29 2024(Updated: )
Unrestricted Upload of File with Dangerous Type vulnerability in Salon Booking System Salon booking system.This issue affects Salon booking system: from n/a through 9.5.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Salon Booking System WordPress Plugin | <9.5.1 | |
Salon Booking System | >=n/a<=9.5 | |
WordPress Salon Booking System | <=9.5 |
Update to 9.5.1 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-30510 is high due to the unrestricted file upload vulnerability which can lead to remote code execution.
To fix CVE-2024-30510, update the Salon Booking System or WordPress Salon booking system plugin to version 9.6 or later.
CVE-2024-30510 allows the upload of files with dangerous types, potentially enabling the execution of malicious scripts.
CVE-2024-30510 affects the Salon Booking System from version n/a to 9.5 and the WordPress Salon booking system plugin up to version 9.5.
As of now, there is no public evidence indicating that CVE-2024-30510 is being actively exploited, but due to its nature, it poses a significant risk.