Vulnerabilities > Onlineonly

DATE CVE VULNERABILITY TITLE RISK
2020-12-15 CVE-2020-35416 Cross-site Scripting vulnerability in Onlineonly PHPjabbers Appointment Scheduler 2.3
Multiple cross-site scripting (XSS) vulnerabilities exist in PHPJabbers Appointment Scheduler 2.3, in the index.php admin login webpage (with different request parameters), allows remote attackers to inject arbitrary web script or HTML.
network
low complexity
onlineonly CWE-79
6.1