NA

CVE-2023-4252

Published: 27/11/2023 Updated: 30/11/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The EventPrime WordPress plugin up to and including 3.2.9 specifies the price of a booking in the client request, allowing an malicious user to purchase bookings without payment.

Vulnerable Product Search on Vulmon Subscribe to Product

metagauss eventprime