Vulnerabilities (CVE)

Filtered by vendor Stivasoft Subscribe
Filtered by product Phpjabbers Appointment Scheduler
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35416 1 Stivasoft 1 Phpjabbers Appointment Scheduler 2020-12-18 4.3 MEDIUM 6.1 MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities exist in PHPJabbers Appointment Scheduler 2.3, in the index.php admin login webpage (with different request parameters), allows remote attackers to inject arbitrary web script or HTML.