CVE-2024-2441

Published May 14, 2024

Last updated 6 months ago

Overview

Description
The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8 allows direct access to menus, allowing an authenticated user with subscriber privileges or above, to bypass authorization and access settings of the VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's they shouldn't be allowed to.
Source
contact@wpscan.com
NVD status
Awaiting Analysis

Social media

Hype score
Not currently trending