Vulnerability index

Browse CVEs

135 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Time Slots Booking Calendar CRITICAL 9.8
CVE-2023-33562

User enumeration is found in in PHP Jabbers Time Slots Booking Calendar v3.3. This issue occurs during password recovery, where a difference in messa…

Mitigation only
Fix from $2,300 2023-08-01
Time Slots Booking Calendar HIGH 8.8
CVE-2023-33563

In PHP Jabbers Time Slots Booking Calendar 3.3 , lack of verification when changing an email address and/or password (on the Profile Page) allows rem…

Mitigation only
Fix from $1,950 2023-08-01
Time Slots Booking Calendar MEDIUM 6.1
CVE-2023-33564

There is a Cross Site Scripting (XSS) vulnerability in the "theme" parameter of preview.php in PHPJabbers Time Slots Booking Calendar v3.3.

Mitigation only
Fix from $1,600 2023-08-01
Time Slots Booking Calendar MEDIUM 6.1
CVE-2023-33560

There is a Cross Site Scripting (XSS) vulnerability in "cid" parameter of preview.php in PHPJabbers Time Slots Booking Calendar v3.3.

Mitigation only
Fix from $1,600 2023-08-01
Fundraising Script CRITICAL 9.8
CVE-2020-22225

Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoadForm function.

No fix yet
Fix from $2,300 2021-11-05
Fundraising Script CRITICAL 9.8
CVE-2020-22226

Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionSetAmount function.

No fix yet
Fix from $2,300 2021-11-05
Fundraising Script MEDIUM 6.1
CVE-2020-22224

Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionPreview function.

No fix yet
Fix from $1,600 2021-11-05
Fundraising Script CRITICAL 9.8
CVE-2020-22223

Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoad function.

No fix yet
Fix from $2,300 2021-11-05
Fundraising Script MEDIUM 6.1
CVE-2020-22222

Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionLoadCss function.

No fix yet
Fix from $1,600 2021-11-05
Rate Me MEDIUM 6.1
CVE-2017-15384

rate-me.php in Rate Me 1.0 has XSS via the id field in a rate action.

No fix yet
Fix from $1,600 2017-10-16
Event Booking Calendar HIGH 7.5
CVE-2014-10015

SQL injection vulnerability in load-calendar.php in PHPJabbers Event Booking Calendar 2.0 allows remote attackers to execute arbitrary SQL commands v…

No fix yet
Fix from $1,950 2015-01-13
Event Booking Calendar MEDIUM 6.8
CVE-2014-10014

Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Event Booking Calendar 2.0 allow remote attackers to hijack the authenticati…

No fix yet
Fix from $1,600 2015-01-13
Appointment Scheduler MEDIUM 5.0
CVE-2014-10010EPSS 8%

Directory traversal vulnerability in PHPJabbers Appointment Scheduler 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the i…

No fix yet
Fix from $1,600 2015-01-13
Appointment Scheduler MEDIUM 6.8
CVE-2014-10001

Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Appointment Scheduler 2.0 allow remote attackers to hijack the authenticatio…

No fix yet
Fix from $1,600 2015-01-13
Vacation Rental Script MEDIUM 6.8
CVE-2012-4324

Cross-site request forgery (CSRF) vulnerability in PHPJabbers Vacation Rental Script allows remote attackers to hijack the authentication of administ…

No fix yet
Fix from $1,600 2012-08-14