First published: Thu Dec 07 2023(Updated: )
Availability Booking Calendar 5.0 is vulnerable to Multiple HTML Injection issues via SMS API Key or Default Country Code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPJabbers Availability Booking Calendar | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-48825 is a vulnerability in Availability Booking Calendar 5.0 which allows for multiple HTML injection issues via the SMS API Key or Default Country Code.
CVE-2023-48825 has a severity rating of medium with a CVSS score of 5.4.
CVE-2023-48825 affects Availability Booking Calendar 5.0, specifically versions exactly 5.0.
CVE-2023-48825 is associated with CWE-79, which is a weakness related to Improper Neutralization of Input During Web Page Generation.
For more information on CVE-2023-48825, you can refer to the following link: http://packetstormsecurity.com/files/176033