Vulnerabilities > Phpjabbers > Appointment Scheduler > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-07 CVE-2023-48840 Resource Exhaustion vulnerability in PHPjabbers Appointment Scheduler 3.0
A lack of rate limiting in pjActionAjaxSend in Appointment Scheduler 3.0 allows attackers to cause resource exhaustion.
network
low complexity
phpjabbers CWE-400
7.5
2023-12-07 CVE-2023-48841 Injection vulnerability in PHPjabbers Appointment Scheduler 3.0
Appointment Scheduler 3.0 is vulnerable to CSV Injection via a Language > Labels > Export action.
network
low complexity
phpjabbers CWE-74
8.8
2023-10-10 CVE-2023-36127 Information Exposure Through Discrepancy vulnerability in PHPjabbers Appointment Scheduler 3.0
User enumeration is found in in PHPJabbers Appointment Scheduler 3.0.
network
low complexity
phpjabbers CWE-203
7.5