6.1
CVSSv3

CVE-2023-47175

Published: 20/11/2023 Updated: 25/11/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross-site scripting vulnerability in LuxCal Web Calendar before 5.2.4M (MySQL version) and LuxCal Web Calendar before 5.2.4L (SQLite version) allows a remote unauthenticated malicious user to execute an arbitrary script on the web browser of the user who is accessing the product.

Vulnerable Product Search on Vulmon Subscribe to Product

luxsoft luxcal web calendar