CVE-2019-15774

Publication date

2019-08-29 11:42:07

Family

mitre

State

PUBLISHED

Description

The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.