Vulnerability index

Browse CVEs

135 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2023-48207 Availability Booking Calendar 5.0 allows CSV injection via the unique ID field in the Reservations list component. Availability Booking Calendar No fix yet Fix from $1,9502023-12-07 MEDIUM 6.1 CVE-2023-48208 A Cross Site Scripting vulnerability in Availability Booking Calendar 5.0 allows an attacker to inject JavaScript via the name, plugin_sms_api_key, p… Availability Booking Calendar No fix yet Fix from $1,6002023-12-07 MEDIUM 5.4 CVE-2023-48172 A Cross Site Scripting (XSS) vulnerability in Shuttle Booking Software 2.0 allows a remote attacker to inject JavaScript via the name, description, t… Shuttle Booking Software No fix yet Fix from $1,6002023-12-07 HIGH 8.8 CVE-2023-43147 PHPJabbers Limo Booking Software 1.0 is vulnerable to Cross Site Request Forgery (CSRF) to add an admin user via the Add Users Function, aka an index… Limo Booking Software No fix yet Fix from $1,9502023-10-12 HIGH 7.5 CVE-2023-36127 User enumeration is found in in PHPJabbers Appointment Scheduler 3.0. This issue occurs during password recovery, where a difference in messages coul… Appointment Scheduler Mitigation only Fix from $1,9502023-10-10 MEDIUM 6.1 CVE-2023-36126 There is a Cross Site Scripting (XSS) vulnerability in the "theme" parameter of preview.php in PHPJabbers Appointment Scheduler v3.0 Appointment Scheduler Mitigation only Fix from $1,6002023-10-10 HIGH 7.5 CVE-2023-43274 Phpjabbers PHP Shopping Cart 4.2 is vulnerable to SQL Injection via the id parameter. Php Shopping Cart No fix yet Fix from $1,9502023-09-21 CRITICAL 9.8 CVE-2023-36140 In PHPJabbers Cleaning Business Software 1.0, there is no encryption on user passwords allowing an attacker to gain access to all user accounts. Cleaning Business Software Mitigation only Fix from $2,3002023-09-11 HIGH 7.5 CVE-2023-41539 phpjabbers Business Directory Script 3.2 is vulnerable to SQL Injection via the column parameter. Business Directory Script No fix yet Fix from $1,9502023-08-30 MEDIUM 6.1 CVE-2023-41538 phpjabbers PHP Forum Script 3.0 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter. Php Forum Script No fix yet Fix from $1,6002023-08-30 MEDIUM 6.1 CVE-2023-41537 phpjabbers Business Directory Script 3.2 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter. Business Directory Script No fix yet Fix from $1,6002023-08-30 CRITICAL 9.8 CVE-2023-40756 User enumeration is found in PHPJabbers Callback Widget v1.0. This issue occurs during password recovery, where a difference in messages could allow … Callback Widget Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40757 User enumeration is found in PHPJabbers Food Delivery Script v3.1. This issue occurs during password recovery, where a difference in messages could a… Food Delivery Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40758 User enumeration is found in PHPJabbers Document Creator v1.0. This issue occurs during password recovery, where a difference in messages could allow… Document Creator Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40759 User enumeration is found in PHP Jabbers Restaurant Booking Script v3.0. This issue occurs during password recovery, where a difference in messages c… Restaurant Booking Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40760 User enumeration is found in PHP Jabbers Hotel Booking System v4.0. This issue occurs during password recovery, where a difference in messages could … Hotel Booking System Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40761 User enumeration is found in PHPJabbers Yacht Listing Script v2.0. This issue occurs during password recovery, where a difference in messages could a… Yacht Listing Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40762 User enumeration is found in PHPJabbers Fundraising Script v1.0. This issue occurs during password recovery, where a difference in messages could all… Fundraising Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40763 User enumeration is found in PHPJabbers Taxi Booking Script v2.0. This issue occurs during password recovery, where a difference in messages could al… Taxi Booking Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40764 User enumeration is found in PHP Jabbers Car Rental Script v3.0. This issue occurs during password recovery, where a difference in messages could all… Car Rental Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40765 User enumeration is found in PHPJabbers Event Booking Calendar v4.0. This issue occurs during password recovery, where a difference in messages could… Event Booking Calendar Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40766 User enumeration is found in in PHPJabbers Ticket Support Script v3.2. This issue occurs during password recovery, where a difference in messages cou… Ticket Support Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40767 User enumeration is found in in PHPJabbers Make an Offer Widget v1.0. This issue occurs during password recovery, where a difference in messages coul… Make An Offer Widget Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40748 PHPJabbers Food Delivery Script 3.0 has a SQL injection (SQLi) vulnerability in the "q" parameter of index.php. Food Delivery Script Mitigation only Fix from $2,3002023-08-28 CRITICAL 9.8 CVE-2023-40749 PHPJabbers Food Delivery Script v3.0 is vulnerable to SQL Injection in the "column" parameter of index.php. Food Delivery Script Mitigation only Fix from $2,3002023-08-28 HIGH 8.8 CVE-2023-40754 In PHPJabbers Car Rental Script 3.0, lack of verification when changing an email address and/or password (on the Profile Page) allows remote attacker… Car Rental Script Mitigation only Fix from $1,9502023-08-28 MEDIUM 6.1 CVE-2023-40750 There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Yacht Listing Script v1.0. Yacht Listing Script Mitigation only Fix from $1,6002023-08-28 MEDIUM 6.1 CVE-2023-40751 PHPJabbers Fundraising Script v1.0 is vulnerable to Cross Site Scripting (XSS) via the "action" parameter of index.php. Fundraising Script Mitigation only Fix from $1,6002023-08-28 MEDIUM 6.1 CVE-2023-40752 There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Make an Offer Widget v1.0. Make An Offer Widget Mitigation only Fix from $1,6002023-08-28 MEDIUM 6.1 CVE-2023-40755 There is a Cross Site Scripting (XSS) vulnerability in the "theme" parameter of preview.php in PHPJabbers Callback Widget v1.0. Callback Widget Mitigation only Fix from $1,6002023-08-28