CVE-2024-30510: WordPress Salon booking system plugin <= 9.5 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in Salon Booking System Salon booking system.This issue affects Salon booking system: from n/a through 9.5.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30510?
The severity of CVE-2024-30510 is high due to the unrestricted file upload vulnerability which can lead to remote code execution.
How do I fix CVE-2024-30510?
To fix CVE-2024-30510, update the Salon Booking System or WordPress Salon booking system plugin to version 9.6 or later.
What types of files can be uploaded in CVE-2024-30510?
CVE-2024-30510 allows the upload of files with dangerous types, potentially enabling the execution of malicious scripts.
What products are affected by CVE-2024-30510?
CVE-2024-30510 affects the Salon Booking System from version n/a to 9.5 and the WordPress Salon booking system plugin up to version 9.5.
Is CVE-2024-30510 being actively exploited?
As of now, there is no public evidence indicating that CVE-2024-30510 is being actively exploited, but due to its nature, it poses a significant risk.