The WP Booking System plugin 1.5.1 for WordPress has no CSRF protection, which allows malicious users to reach certain SQL injection issues that require administrative access.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wpbookingsystem wp booking system |