CVE-2024-30516: WordPress Booking Package plugin <= 1.6.27 - Price Manipulation vulnerability
Improper Validation of Specified Quantity in Input vulnerability in SaasProject Booking Package allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Booking Package: from n/a through 1.6.27.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30516?
CVE-2024-30516 has a severity rating that indicates a significant risk due to improper validation of user inputs, allowing unauthorized access to functionality.
How do I fix CVE-2024-30516?
To fix CVE-2024-30516, update the SaasProject Booking Package to version 1.6.28 or higher where the vulnerability is patched.
What are the potential impacts of CVE-2024-30516?
CVE-2024-30516 could lead to unauthorized access and manipulation of booking functionalities if not addressed.
Which versions of Booking Package are affected by CVE-2024-30516?
CVE-2024-30516 affects Booking Package versions up to and including 1.6.27.
Can CVE-2024-30516 be exploited remotely?
Yes, CVE-2024-30516 can potentially be exploited remotely due to the improper validation of input.