CVE-2020-35416

Multiple cross-site scripting (XSS) vulnerabilities exist in PHPJabbers Appointment Scheduler 2.3, in the index.php admin login webpage (with different request parameters), allows remote attackers to inject arbitrary web script or HTML.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:onlineonly:phpjabbers_appointment_scheduler:2.3:*:*:*:*:*:*:*

Information

Published : 2020-12-15 13:15

Updated : 2022-08-05 20:54


NVD link : CVE-2020-35416

Mitre link : CVE-2020-35416


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

onlineonly

  • phpjabbers_appointment_scheduler