Vulnerabilities > Phpjabbers > Fundraising Script > 1.0

DATE CVE VULNERABILITY TITLE RISK
2023-08-28 CVE-2023-40751 Cross-site Scripting vulnerability in PHPjabbers Fundraising Script 1.0
PHPJabbers Fundraising Script v1.0 is vulnerable to Cross Site Scripting (XSS) via the "action" parameter of index.php.
network
low complexity
phpjabbers CWE-79
6.1
2023-08-28 CVE-2023-40762 Information Exposure Through an Error Message vulnerability in PHPjabbers Fundraising Script 1.0
User enumeration is found in PHPJabbers Fundraising Script v1.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2021-11-05 CVE-2020-22222 Cross-site Scripting vulnerability in PHPjabbers Fundraising Script 1.0
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionLoadCss function.
network
phpjabbers CWE-79
4.3
2021-11-05 CVE-2020-22223 SQL Injection vulnerability in PHPjabbers Fundraising Script 1.0
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoad function.
network
low complexity
phpjabbers CWE-89
7.5
2021-11-05 CVE-2020-22224 Cross-site Scripting vulnerability in PHPjabbers Fundraising Script 1.0
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the pjActionPreview function.
network
phpjabbers CWE-79
4.3
2021-11-05 CVE-2020-22225 SQL Injection vulnerability in PHPjabbers Fundraising Script 1.0
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoadForm function.
network
low complexity
phpjabbers CWE-89
7.5
2021-11-05 CVE-2020-22226 SQL Injection vulnerability in PHPjabbers Fundraising Script 1.0
Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionSetAmount function.
network
low complexity
phpjabbers CWE-89
7.5