Vulnerability index

Browse CVEs

135 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2023-33562 User enumeration is found in in PHP Jabbers Time Slots Booking Calendar v3.3. This issue occurs during password recovery, where a difference in messa… Time Slots Booking Calendar Mitigation only Fix from $2,3002023-08-01 HIGH 8.8 CVE-2023-33563 In PHP Jabbers Time Slots Booking Calendar 3.3 , lack of verification when changing an email address and/or password (on the Profile Page) allows rem… Time Slots Booking Calendar Mitigation only Fix from $1,9502023-08-01 MEDIUM 6.1 CVE-2023-33564 There is a Cross Site Scripting (XSS) vulnerability in the "theme" parameter of preview.php in PHPJabbers Time Slots Booking Calendar v3.3. Time Slots Booking Calendar Mitigation only Fix from $1,6002023-08-01 MEDIUM 6.1 CVE-2023-33560 There is a Cross Site Scripting (XSS) vulnerability in "cid" parameter of preview.php in PHPJabbers Time Slots Booking Calendar v3.3. Time Slots Booking Calendar Mitigation only Fix from $1,6002023-08-01 CRITICAL 9.8 CVE-2020-22225 Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoadForm function. Fundraising Script No fix yet Fix from $2,3002021-11-05 CRITICAL 9.8 CVE-2020-22226 Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionSetAmount function. Fundraising Script No fix yet Fix from $2,3002021-11-05 MEDIUM 6.1 CVE-2020-22224 Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionPreview function. Fundraising Script No fix yet Fix from $1,6002021-11-05 CRITICAL 9.8 CVE-2020-22223 Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoad function. Fundraising Script No fix yet Fix from $2,3002021-11-05 MEDIUM 6.1 CVE-2020-22222 Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionLoadCss function. Fundraising Script No fix yet Fix from $1,6002021-11-05 MEDIUM 6.1 CVE-2017-15384 rate-me.php in Rate Me 1.0 has XSS via the id field in a rate action. Rate Me No fix yet Fix from $1,6002017-10-16 HIGH 7.5 CVE-2014-10015 SQL injection vulnerability in load-calendar.php in PHPJabbers Event Booking Calendar 2.0 allows remote attackers to execute arbitrary SQL commands v… Event Booking Calendar No fix yet Fix from $1,9502015-01-13 MEDIUM 6.8 CVE-2014-10014 Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Event Booking Calendar 2.0 allow remote attackers to hijack the authenticati… Event Booking Calendar No fix yet Fix from $1,6002015-01-13 MEDIUM 5.0 CVE-2014-10010EPSS 8% Directory traversal vulnerability in PHPJabbers Appointment Scheduler 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the i… Appointment Scheduler No fix yet Fix from $1,6002015-01-13 MEDIUM 6.8 CVE-2014-10001 Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Appointment Scheduler 2.0 allow remote attackers to hijack the authenticatio… Appointment Scheduler No fix yet Fix from $1,6002015-01-13 MEDIUM 6.8 CVE-2012-4324 Cross-site request forgery (CSRF) vulnerability in PHPJabbers Vacation Rental Script allows remote attackers to hijack the authentication of administ… Vacation Rental Script No fix yet Fix from $1,6002012-08-14