CVE-2024-5071
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/06/2024
Last modified:
19/05/2025
Description
The Bookster WordPress plugin through 1.1.0 allows adding sensitive parameters when validating appointments allowing attackers to manipulate the data sent when booking an appointment (the request body) to change its status from pending to approved.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:wpbookster:bookster:*:*:*:*:*:wordpress:*:* | 1.1.0 (including) |
To consult the complete list of CPE names with products and versions, see this page



