6.1
CVSSv3

CVE-2023-27918

Published: 10/05/2023 Updated: 17/05/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross-site scripting vulnerability in Appointment and Event Booking Calendar for WordPress - Amelia versions before 1.0.76 allows a remote unauthenticated malicious user to inject an arbitrary script by having a user who is logging in the WordPress where the product is installed visit a malicious URL.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tms-outsource amelia