Vulnerabilities > Codepeople > Appointment Booking Calendar > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-11-18 | CVE-2022-43482 | Missing Authorization vulnerability in Codepeople Appointment Booking Calendar Missing Authorization vulnerability in Appointment Booking Calendar plugin <= 1.3.69 on WordPress. | 8.8 |
2019-08-22 | CVE-2016-10916 | SQL Injection vulnerability in Codepeople Appointment Booking Calendar The appointment-booking-calendar plugin before 1.1.24 for WordPress has SQL injection, a different vulnerability than CVE-2015-7319. | 7.5 |
2015-09-29 | CVE-2015-7319 | SQL Injection vulnerability in Codepeople Appointment Booking Calendar SQL injection vulnerability in cpabc_appointments_admin_int_calendar_list.inc.php in the Appointment Booking Calendar plugin before 1.1.8 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to updating the username. | 7.5 |