Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.1
CVE-2024-22635
WebCalendar v1.3.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /WebCalendarvqsmnseug2/edit_entry…
Webcalendar
No fix yet
MEDIUM 5.4
CVE-2023-0289
Cross-site Scripting (XSS) - Stored in GitHub repository craigk5n/webcalendar prior to master.
Webcalendar
Patch available
MEDIUM 5.3
CVE-2013-1422
webcalendar before 1.2.7 shows the reason for a failed login (e.g., "no such user").
Webcalendar
1.2.7+
CRITICAL 9.8
CVE-2012-1495EPSS 80%
install/index.php in WebCalendar before 1.2.5 allows remote attackers to execute arbitrary code via the form_single_user_login parameter.
Webcalendar
1.2.5+
HIGH 8.8
CVE-2012-1496
Local file inclusion in WebCalendar before 1.2.5.
Webcalendar
1.2.5+
MEDIUM 6.1
CVE-2017-10840
Cross-site scripting vulnerability in WebCalendar 1.2.7 and earlier allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
Webcalendar
Patch available
HIGH 7.5
CVE-2012-5385
install/index.php in Craig Knudsen WebCalendar before 1.2.5 allows remote attackers to modify settings.php and possibly execute arbitrary code via ve…
Webcalendar
Mitigation only