nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-48319 CVE-2023-48319
MEDIUM
WordPress Salon booking system plugin < 8.7 - Editor+ Privilege Escalation vulnerability
Record summary
CVE-2023-48319 has a selected CVSS score of 6.8 (medium).
Description
Improper Privilege Management vulnerability in Salon Booking System Salon booking system allows Privilege Escalation.This issue affects Salon booking system: from n/a through 8.6.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated May 20, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Salon booking systemBrowse Salon Booking System / Salon booking systemDefault status: unaffected | CVE List | Through 8.6 | affected |
salon_booking_systemBrowse salon_booking_system / salon_booking_systemDefault status: unknown | CVE List | Through 8.6 | affected |
References
2patchstack.comvdb entry
https://patchstack.com/database/vulnerability/salon-booking-system/wordpress-salon-booking-system-plugin-8-7-editor-privilege-escalation-vulnerability?_s_id=cve