CVE-2024-35735: WordPress WP Time Slots Booking Form plugin <= 1.2.11 - Broken Access Control vulnerability
Published Jun 10, 2024
·Updated
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.2.11.
Affected Software
1 affected component
CodePeople Wp Time Slots Booking Form Wordpress<1.2.12
Remediation
Information
Update to 1.2.12 or a higher version.
Event History
Jun 10, 2024
CVE Published
via MITRE·07:43 AM
Data Sourced
via MITRE·07:43 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-35735?
CVE-2024-35735 has been categorized as a Missing Authorization vulnerability.
2
How do I fix CVE-2024-35735?
To fix CVE-2024-35735, update the WP Time Slots Booking Form plugin to version 1.2.12 or later.
3
What versions of WP Time Slots Booking Form are affected by CVE-2024-35735?
CVE-2024-35735 affects WP Time Slots Booking Form versions up to and including 1.2.11.
4
What type of vulnerability is CVE-2024-35735?
CVE-2024-35735 is classified as a Broken Access Control vulnerability.
5
Who is the vendor for the affected software in CVE-2024-35735?
The vendor for the affected software in CVE-2024-35735 is CodePeople.