Cross-site scripting (XSS) vulnerability in calendar.php in Jelsoft vBulletin 3.6.x prior to 3.6.7 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors, related to the vb_calendar366_xss_fix_plugin.xml update.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jelsoft vbulletin |