First published: Thu Feb 20 2025(Updated: )
PHPJabbers Meeting Room Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters of index.php page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
John Beranek Meeting Room Booking System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-51338 is classified as a medium severity vulnerability due to the potential for stored cross-site scripting attacks.
To fix CVE-2023-51338, validate and sanitize all user inputs in the 'title' and 'name' parameters to prevent XSS attacks.
CVE-2023-51338 affects PHPJabbers Meeting Room Booking System version 1.0 specifically.
Yes, CVE-2023-51338 can lead to data breaches by allowing attackers to inject malicious scripts that can steal user information.
Any user who can send requests to the vulnerable PHPJabbers Meeting Room Booking System can exploit CVE-2023-51338.