Cross-Site Scripting Vulnerability in wp-easybooking Plugin for WordPress
CVE-2014-4584

Currently unrated

Key Information:

Vendor
Wordpress
Vendor
CVE Published:
1 July 2014

Summary

The wp-easybooking plugin for WordPress contains a Cross-Site Scripting (XSS) vulnerability in the admin/editFacility.php file. This issue allows remote attackers to exploit the fID parameter to inject arbitrary web scripts or HTML into a user’s browser. As a result, attackers may utilize this vulnerability to perform malicious actions, potentially compromising website security and user data.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.