漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Appointment Booking Calendar <= 1.4.01 - Authenticated (Contributor+) Sensitive Information Exposure via 'id' Parameter
Vulnerability Description
The Appointment Booking Calendar plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.4.01. This is due to insufficient authorization and missing per-calendar ownership checks in the cpabc_appointments_calendar_load2() function, which is reachable via the cpabc_calendar_load2=1 query parameter in wp-admin and only checks is_admin() && current_user_can('edit_posts'), a capability available to Contributor-level users and above. This makes it possible for authenticated attackers with Contributor-level access and above to supply an arbitrary calendar ID via the id parameter and extract customer booking information, including email addresses, names, phone numbers, booking times, and comments, from any calendar managed by the plugin.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
信息暴露
Vulnerability Title
codepeople Appointment Booking Calendar 信息泄露漏洞
Vulnerability Description
codepeople appointment booking calendar是codepeople个人开发者开源的一款在线预约日程管理插件。 codepeople Appointment Booking Calendar 1.4.01及之前版本存在信息泄露漏洞,该漏洞源于cpabc_appointments_calendar_load2()函数中授权不足和缺少日历所有权检查,可能导致经过身份验证的具有贡献者级及以上权限的攻击者通过id参数提供任意日历ID,提取客户预订信息。
CVSS Information
N/A
Vulnerability Type
N/A