Security Advisory

CVE-2020-29047

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-03 17:15:29
Last updated 2024-08-04 16:48:01
Assigner mitre
State PUBLISHED

Description

The wp-hotel-booking plugin through 1.10.2 for WordPress allows remote attackers to execute arbitrary code because of an unserialize operation on the thimpress_hotel_booking_1 cookie in load in includes/class-wphb-sessions.php.