Cross-Site Scripting Vulnerability in wp-easybooking Plugin for WordPress
CVE-2014-4584
Currently unrated
Summary
The wp-easybooking plugin for WordPress contains a Cross-Site Scripting (XSS) vulnerability in the admin/editFacility.php file. This issue allows remote attackers to exploit the fID parameter to inject arbitrary web scripts or HTML into a user’s browser. As a result, attackers may utilize this vulnerability to perform malicious actions, potentially compromising website security and user data.
References
Timeline
Vulnerability published
Vulnerability Reserved