Unauthorized Password Reset Vulnerability in WPBookit WordPress Plugin
The WPBookit plugin for WordPress has a vulnerability in versions up to 1.6.4. This is an Arbitrary User Password Change issue. The plugin lets users access objects and bypass authorization. Unauthenticated attackers can change user passwords. They can even take over administrator accounts.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
iqonic design wpbookit |