Lucene search

K
wpvulndbWpvulndbWPVDB-ID:C7619434-BA7B-40A0-A532-717BEA736022
HistoryNov 29, 2022 - 12:00 a.m.

Appointment Hour Booking < 1.3.73 - CAPTCHA Bypass

2022-11-2900:00:00
wpscan.com
10
captcha bypass
weak hashing algorithm
cookie vulnerability
security flaw

EPSS

0.001

Percentile

34.9%

The plugin does not have a strong hashing algorithm on the CAPTCHA secret, and displays it to the user via a cookie, which could allow them to bypass the protection in place

EPSS

0.001

Percentile

34.9%

Related for WPVDB-ID:C7619434-BA7B-40A0-A532-717BEA736022