CVE-2024-33543: WordPress WP Time Slots Booking Form plugin <= 1.2.06 - Broken Access Control vulnerability
Published Jun 9, 2024
·Updated
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.2.06.
Affected Software
1 affected component
CodePeople Wp Time Slots Booking Form Wordpress<1.2.07
Remediation
Information
Update to 1.2.07 or a higher version.
Event History
Jun 9, 2024
CVE Published
via MITRE·12:11 PM
Data Sourced
via MITRE·12:11 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-33543?
CVE-2024-33543 is classified as a missing authorization vulnerability impacting WP Time Slots Booking Form.
2
How do I fix CVE-2024-33543?
To mitigate CVE-2024-33543, update the WP Time Slots Booking Form plugin to version 1.2.07 or later.
3
Which versions are affected by CVE-2024-33543?
CVE-2024-33543 affects all versions of WP Time Slots Booking Form up to and including 1.2.06.
4
What impact does CVE-2024-33543 have on my website?
CVE-2024-33543 can allow unauthorized access to sensitive functionalities of the WP Time Slots Booking Form plugin.
5
Is my WordPress site vulnerable if I use WP Time Slots Booking Form?
If you're using WP Time Slots Booking Form version 1.2.06 or earlier, your site is vulnerable to CVE-2024-33543.