CVE Database
/

CVE-2024-2441

Back to search

CVE-2024-2441

Published: May 10, 2024

Modified: Mar 14, 2025

PUBLISHED

Description

The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8 allows direct access to menus, allowing an authenticated user with subscriber privileges or above, to bypass authorization and access settings of the VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's they shouldn't be allowed to.

VendorProductVersions

Unknown

VikBooking Hotel Booking Engine & PMS

affected
0 - < 1.6.8

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2024-2441 - Security Vulnerability | QwikSec