The wp-hotel-booking plugin through 1.10.2 for WordPress allows remote attackers to execute arbitrary code because of an unserialize operation on the thimpress_hotel_booking_1 cookie in load in includes/class-wphb-sessions.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-03-03T17:15:29
Updated: 2024-08-04T16:48:01.371Z
Reserved: 2020-11-24T00:00:00
Link: CVE-2020-29047
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-03-03T18:15:13.783
Modified: 2021-03-10T13:21:47.277
Link: CVE-2020-29047
Redhat
No data.