The Ketchup Restaurant Reservations WordPress plugin up to and including 1.0.0 does not validate and escape some reservation parameters before using them in SQL statements, which could allow unauthenticated malicious users to perform SQL Injection attacks
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ketchup restaurant reservations project ketchup restaurant reservations |