Products

Showing 1 vulnerability on this page

Signals CISA KEV Ransomware Nuclei
booking_project vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

booking_project booking URL Redirection to Untrusted Site ('Open Redirect')

The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.

CWE-601Aug 29, 20191 related artifact
CVSS6.1v3.0EPSS1.73%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX