Show filters
107 Total Results
Displaying 101-107 of 107
Sort by:
Attacker Value
Unknown
CVE-2019-13505
Disclosure Date: July 11, 2019 (last updated November 27, 2024)
The Appointment Hour Booking plugin 1.1.44 for WordPress allows XSS via the E-mail field, as demonstrated by email_1.
0
Attacker Value
Unknown
CVE-2017-12758
Disclosure Date: May 09, 2019 (last updated November 27, 2024)
https://www.joomlaextensions.co.in/ Joomla! Component Appointment 1.1 is affected by: SQL Injection. The impact is: Code execution (remote). The component is: com_appointment component.
0
Attacker Value
Unknown
CVE-2019-9066
Disclosure Date: February 23, 2019 (last updated November 27, 2024)
PHP Scripts Mall PHP Appointment Booking Script 3.0.3 allows HTML injection in a user profile.
0
Attacker Value
Unknown
CVE-2015-7320
Disclosure Date: September 29, 2015 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in cpabc_appointments_admin_int_bookings_list.inc.php in the Appointment Booking Calendar plugin before 1.1.8 for WordPress allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-7319
Disclosure Date: September 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in cpabc_appointments_admin_int_calendar_list.inc.php in the Appointment Booking Calendar plugin before 1.1.8 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to updating the username.
0
Attacker Value
Unknown
CVE-2014-10001
Disclosure Date: January 13, 2015 (last updated October 05, 2023)
Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Appointment Scheduler 2.0 allow remote attackers to hijack the authentication of administrators for requests that (1) conduct cross-site scripting (XSS) attacks via the i18n[1][name] parameter in a pjActionCreate action to the pjAdminServices controller or (2) add an administrator via a pjActionCreate action to the pjAdminUsers controller.
0
Attacker Value
Unknown
CVE-2014-10010
Disclosure Date: January 13, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in PHPJabbers Appointment Scheduler 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter in a pjActionDownload action to the pjBackup controller.
0