{
"id": "CVE-2023-4252",
"sourceIdentifier": "contact@wpscan.com",
"published": "2023-11-27T17:15:08.517",
"lastModified": "2023-11-27T19:03:39.603",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
"lang": "en",
"value": "The EventPrime WordPress plugin through 3.2.9 specifies the price of a booking in the client request, allowing an attacker to purchase bookings without payment."
}
],
"metrics": {},
"references": [
"url": "https://wpscan.com/vulnerability/d2019e59-db6c-4014-8057-0644c9a00665",
"source": "contact@wpscan.com"
]