First published: Tue Aug 01 2023(Updated: )
Improper input validation of password parameter in PHP Jabbers Time Slots Booking Calendar v 3.3 results in insecure passwords.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPJabbers Time Slots Booking Calendar | =3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-33561 is critical with a score of 9.8 out of 10.
CVE-2023-33561 relates to an improper input validation vulnerability in PHP Jabbers Time Slots Booking Calendar version 3.3, which could result in insecure passwords.
CVE-2023-33561 affects PHP Jabbers Time Slots Booking Calendar version 3.3 by allowing the use of insecure passwords due to improper input validation of the password parameter.
At this time, there is no specific fix available for CVE-2023-33561. It is recommended to update to a secure version of PHP Jabbers Time Slots Booking Calendar, if available, or contact the vendor for guidance.
You can find more information about CVE-2023-33561 on the Medium article https://medium.com/@bcksec/multiple-vulnerabilities-in-php-jabbers-scripts-25af4afcadd4 and the PHP Jabbers Time Slots Booking Calendar website https://www.phpjabbers.com/time-slots-booking-calendar/.