WordPress is a set of blogging platforms developed by the Wordpress Foundation using the PHP language. WordPress plugin is an application plugin for WordPress. WordPress Advanced Booking Calendar before plugin version 1.7.1 is vulnerable to a SQL injection vulnerability that stems from The plugin fails to clean up and escape the id parameter when editing the calendar. An attacker could exploit this vulnerability to perform SQL injection attacks.
CPE | Name | Operator | Version |
---|---|---|---|
wordpress advanced booking calendar before plugin | lt | 1.7.1 |