PHPJabbers Cleaning Business Software v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "c_name, name" parameters.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:NPhpjabbers Cleaning Business Software
APPPhpjabbers1.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
XSS
CWE
Related vulnerabilities
CVE-2023-36140CRITICAL9.8PL ✓same product
PHPJabbers Cleaning Business Software — brak szyfrowania haseł użytkowników
CVE-2023-36139CRITICAL9.8PL ✓same product
PHPJabbers Cleaning Business Software — przejęcie konta przez brak weryfikacji
CVE-2023-51326MEDIUM6.5same product
A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Cleaning Business Software v1.0 allows ...
CVE-2023-51327MEDIUM6.5same product
A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Cleaning Business Software v1.0 allows ...
CVE-2023-51331MEDIUM6.5same product
PHPJabbers Cleaning Business Software v1.0 is vulnerable to CSV Injection vulnerability which allows an attack...