Vulnerabilities > Phpjabbers

DATE CVE VULNERABILITY TITLE RISK
2023-10-10 CVE-2023-36127 Information Exposure Through Discrepancy vulnerability in PHPjabbers Appointment Scheduler 3.0
User enumeration is found in in PHPJabbers Appointment Scheduler 3.0.
network
low complexity
phpjabbers CWE-203
7.5
2023-09-21 CVE-2023-43274 SQL Injection vulnerability in PHPjabbers PHP Shopping Cart 4.2
Phpjabbers PHP Shopping Cart 4.2 is vulnerable to SQL Injection via the id parameter.
network
low complexity
phpjabbers CWE-89
7.5
2023-09-11 CVE-2023-36140 Missing Authorization vulnerability in PHPjabbers Cleaning Business Software 1.0
In PHPJabbers Cleaning Business Software 1.0, there is no encryption on user passwords allowing an attacker to gain access to all user accounts.
network
low complexity
phpjabbers CWE-862
critical
9.8
2023-08-30 CVE-2023-41537 Cross-site Scripting vulnerability in PHPjabbers Business Directory Script 3.2
phpjabbers Business Directory Script 3.2 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter.
network
low complexity
phpjabbers CWE-79
6.1
2023-08-30 CVE-2023-41538 Cross-site Scripting vulnerability in PHPjabbers PHP Forum Script 3.0
phpjabbers PHP Forum Script 3.0 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter.
network
low complexity
phpjabbers CWE-79
6.1
2023-08-30 CVE-2023-41539 SQL Injection vulnerability in PHPjabbers Business Directory Script 3.2
phpjabbers Business Directory Script 3.2 is vulnerable to SQL Injection via the column parameter.
network
low complexity
phpjabbers CWE-89
7.5
2023-08-28 CVE-2023-40748 SQL Injection vulnerability in PHPjabbers Food Delivery Script 3.0
PHPJabbers Food Delivery Script 3.0 has a SQL injection (SQLi) vulnerability in the "q" parameter of index.php.
network
low complexity
phpjabbers CWE-89
critical
9.8
2023-08-28 CVE-2023-40749 SQL Injection vulnerability in PHPjabbers Food Delivery Script 3.0
PHPJabbers Food Delivery Script v3.0 is vulnerable to SQL Injection in the "column" parameter of index.php.
network
low complexity
phpjabbers CWE-89
critical
9.8
2023-08-28 CVE-2023-40750 Cross-site Scripting vulnerability in PHPjabbers Yacht Listing Script 1.0
There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Yacht Listing Script v1.0.
network
low complexity
phpjabbers CWE-79
6.1
2023-08-28 CVE-2023-40751 Cross-site Scripting vulnerability in PHPjabbers Fundraising Script 1.0
PHPJabbers Fundraising Script v1.0 is vulnerable to Cross Site Scripting (XSS) via the "action" parameter of index.php.
network
low complexity
phpjabbers CWE-79
6.1