Cross-Site Scripting Vulnerability in wp-easybooking Plugin for WordPress
CVE-2014-4584

Currently unrated

Key Information:

Vendor

Wordpress

Vendor
CVE Published:
1 July 2014

What is CVE-2014-4584?

The wp-easybooking plugin for WordPress contains a Cross-Site Scripting (XSS) vulnerability in the admin/editFacility.php file. This issue allows remote attackers to exploit the fID parameter to inject arbitrary web scripts or HTML into a user’s browser. As a result, attackers may utilize this vulnerability to perform malicious actions, potentially compromising website security and user data.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
The Cyber Security Vulnerability Database.