First published: Wed Feb 19 2025(Updated: )
PHPJabbers Event Ticketing System v1.0 is vulnerable to Multiple HTML Injection in the "lid, name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPJabbers Event Ticketing System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-51303 is classified as a medium severity vulnerability due to its potential for exploitation via HTML injection.
To fix CVE-2023-51303, sanitize and validate all user input to prevent HTML injection in the affected parameters.
The affected parameters in CVE-2023-51303 include lid, name, plugin_sms_api_key, plugin_sms_country_code, and title.
CVE-2023-51303 affects version 1.0 of the PHPJabbers Event Ticketing System.
The impact of CVE-2023-51303 can lead to unauthorized execution of HTML content, potentially compromising user data and application integrity.