7.5
CVSSv3

CVE-2023-36127

Published: 10/10/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

User enumeration is found in in PHPJabbers Appointment Scheduler 3.0. This issue occurs during password recovery, where a difference in messages could allow an malicious user to determine if the user is valid or not, enabling a brute force attack with valid users.

Vulnerable Product Search on Vulmon Subscribe to Product

phpjabbers appointment scheduler 3.0