6.5
CVSSv3

CVE-2023-36136

Published: 08/08/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

PHPJabbers Class Scheduling System 1.0 lacks encryption on the password when editing a user account (update user page) allowing an malicious user to capture all user names and passwords in clear text.

Vulnerable Product Search on Vulmon Subscribe to Product

phpjabbers class scheduling system 1.0