Show filters
3,812 Total Results
Displaying 301-310 of 3,812
Sort by:
Attacker Value
Unknown

CVE-2023-48826

Disclosure Date: December 07, 2023 (last updated February 25, 2025)
Time Slots Booking Calendar 4.0 is vulnerable to CSV Injection via the unique ID field of the Reservations List.
Attacker Value
Unknown

CVE-2023-48825

Disclosure Date: December 07, 2023 (last updated February 25, 2025)
Availability Booking Calendar 5.0 is vulnerable to Multiple HTML Injection issues via SMS API Key or Default Country Code.
Attacker Value
Unknown

CVE-2023-48208

Disclosure Date: December 07, 2023 (last updated February 25, 2025)
A Cross Site Scripting vulnerability in Availability Booking Calendar 5.0 allows an attacker to inject JavaScript via the name, plugin_sms_api_key, plugin_sms_country_code, uuid, title, or country name parameter to index.php.
Attacker Value
Unknown

CVE-2023-48207

Disclosure Date: December 07, 2023 (last updated February 25, 2025)
Availability Booking Calendar 5.0 allows CSV injection via the unique ID field in the Reservations list component.
Attacker Value
Unknown

CVE-2023-48172

Disclosure Date: December 07, 2023 (last updated February 25, 2025)
A Cross Site Scripting (XSS) vulnerability in Shuttle Booking Software 2.0 allows a remote attacker to inject JavaScript via the name, description, title, or address parameter to index.php.
Attacker Value
Unknown

CVE-2023-6474

Disclosure Date: December 03, 2023 (last updated February 25, 2025)
A vulnerability has been found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file manage-phlebotomist.php. The manipulation of the argument pid leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-246640.
Attacker Value
Unknown

CVE-2023-6472

Disclosure Date: December 02, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as problematic, has been found in PHPEMS 7.0. This issue affects some unknown processing of the file app\content\cls\api.cls.php of the component Content Section Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-246629 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-6465

Disclosure Date: December 02, 2023 (last updated February 25, 2025)
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been classified as problematic. This affects an unknown part of the file registered-user-testing.php. The manipulation of the argument regmobilenumber leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-246615.
Attacker Value
Unknown

CVE-2023-48016

Disclosure Date: December 01, 2023 (last updated February 25, 2025)
Restaurant Table Booking System V1.0 is vulnerable to SQL Injection in rtbs/admin/index.php via the username parameter.
Attacker Value
Unknown

CVE-2023-6442

Disclosure Date: November 30, 2023 (last updated February 25, 2025)
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file add-phlebotomist.php. The manipulation of the argument empid/fullname leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-246445 was assigned to this vulnerability.