Description
Sensitive Information Exposure in E4J s.r.l. VikBooking Hotel Booking Engine & PMS plugin <= 1.5.3 on WordPress allows attackers to get the booking data by guessing / brute-forcing easy predictable booking IDs via search POST requests.
No analysis available yet.
Remediation
Vendor Solution
Update to 1.5.4 or higher version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32351 | Sensitive Information Exposure in E4J s.r.l. VikBooking Hotel Booking Engine & PMS plugin <= 1.5.3 on WordPress allows attackers to get the booking data by guessing / brute-forcing easy predictable booking IDs via search POST requests. |
References
History
Thu, 20 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-02-20T20:25:56.872Z
Reserved: 2022-03-24T00:00:00.000Z
Link: CVE-2022-27863
Updated: 2024-08-03T05:41:10.382Z
Status : Modified
Published: 2022-04-19T21:15:18.867
Modified: 2024-11-21T06:56:21.260
Link: CVE-2022-27863
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD