Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NDefault status
unaffected
Any version
affected
Description
Improper Validation of Specified Quantity in Input vulnerability in SaasProject Booking Package allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Booking Package: from n/a through 1.6.27.
Problem types
CWE-1284 Improper Validation of Specified Quantity in Input
Product status
Any version
Credits
Abdi Pranata | Patchstack Bug Bounty Progran
References
patchstack.com/...price-manipulation-vulnerability?_s_id=cve