5.4
CVSSv3

CVE-2023-48839

Published: 07/12/2023 Updated: 09/12/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Appointment Scheduler 3.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) issues via the name, plugin_sms_api_key, plugin_sms_country_code, calendar_id, title, country name, or customer_name parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

phpjabbers appointment scheduler 3.0

Exploits

PHPJabbers Appointment Scheduler version 30 suffers from multiple persistent cross site scripting vulnerabilities ...