First published: Thu Dec 07 2023(Updated: )
Appointment Scheduler 3.0 is vulnerable to CSV Injection via a Language > Labels > Export action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPJabbers Appointment Scheduler | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-48841 is a vulnerability in Appointment Scheduler 3.0 that allows for CSV Injection via a Language > Labels > Export action.
CVE-2023-48841 has a severity rating of 8.8, which is classified as high.
Appointment Scheduler 3.0 is affected by CVE-2023-48841.
To fix CVE-2023-48841, it is recommended to update Appointment Scheduler to a secure version or apply any patches or fixes provided by the vendor.
For more information about CVE-2023-48841, you can visit the following references: [https://www.phpjabbers.com/appointment-scheduler/](https://www.phpjabbers.com/appointment-scheduler/) and [http://packetstormsecurity.com/files/176058](http://packetstormsecurity.com/files/176058).