Show filters
3,812 Total Results
Displaying 401-410 of 3,812
Sort by:
Attacker Value
Unknown

CVE-2023-36313

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
PHPJabbers Document Creator v1.0 is vulnerable to Cross Site Scripting (XSS) via all post parameters of "Export Requests" aside from "request_feed".
Attacker Value
Unknown

CVE-2023-36312

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
There is a Cross Site Scripting (XSS) vulnerability in the value-enum-o_bf_include_timezone parameter of index.php in PHPJabbers Callback Widget v1.0.
Attacker Value
Unknown

CVE-2023-36311

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
There is a SQL injection (SQLi) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creator v1.0.
Attacker Value
Unknown

CVE-2023-36310

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
There is a Cross Site Scripting (XSS) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creator v1.0.
Attacker Value
Unknown

CVE-2023-36309

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Document Creator v1.0.
Attacker Value
Unknown

CVE-2023-39776

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
A File Upload vulnerability in PHPJabbers Ticket Support Script v3.2 allows attackers to execute arbitrary code via uploading a crafted file.
Attacker Value
Unknown

CVE-2023-38830

Disclosure Date: August 10, 2023 (last updated February 25, 2025)
An information leak in PHPJabbers Yacht Listing Script v1.0 allows attackers to export clients' credit card numbers from the Reservations module.
Attacker Value
Unknown

CVE-2023-36136

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
PHPJabbers Class Scheduling System 1.0 lacks encryption on the password when editing a user account (update user page) allowing an attacker to capture all user names and passwords in clear text.
Attacker Value
Unknown

CVE-2023-37690

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
Maid Hiring Management System v1.0 was discovered to contain a SQL injection vulnerability in the Search Maid page.
Attacker Value
Unknown

CVE-2023-37689

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
Maid Hiring Management System v1.0 was discovered to contain a SQL injection vulnerability in the Booking Request page.