Vulnerabilities > Phpjabbers > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-08-28 CVE-2023-40763 Information Exposure Through an Error Message vulnerability in PHPjabbers Taxi Booking Script 2.0
User enumeration is found in PHPJabbers Taxi Booking Script v2.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40764 Information Exposure Through an Error Message vulnerability in PHPjabbers CAR Rental Script 3.0
User enumeration is found in PHP Jabbers Car Rental Script v3.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40765 Information Exposure Through an Error Message vulnerability in PHPjabbers Event Booking Calendar 4.0
User enumeration is found in PHPJabbers Event Booking Calendar v4.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40766 Information Exposure Through an Error Message vulnerability in PHPjabbers Ticket Support Script 3.2
User enumeration is found in in PHPJabbers Ticket Support Script v3.2.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40767 Information Exposure Through an Error Message vulnerability in PHPjabbers Make AN Offer Widget 1.0
User enumeration is found in in PHPJabbers Make an Offer Widget v1.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-10 CVE-2023-36311 SQL Injection vulnerability in PHPjabbers Document Creator 1.0
There is a SQL injection (SQLi) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creator v1.0.
network
low complexity
phpjabbers CWE-89
critical
9.8
2023-08-10 CVE-2023-39776 Unrestricted Upload of File with Dangerous Type vulnerability in PHPjabbers Ticket Support Script 3.2
A File Upload vulnerability in PHPJabbers Ticket Support Script v3.2 allows attackers to execute arbitrary code via uploading a crafted file.
network
low complexity
phpjabbers CWE-434
critical
9.8
2023-08-04 CVE-2023-36131 Unspecified vulnerability in PHPjabbers Availability Booking Calendar 5.0
PHPJabbers Availability Booking Calendar 5.0 is vulnerable to Incorrect Access Control due to improper input validation of password parameter.
network
low complexity
phpjabbers
critical
9.8
2023-08-04 CVE-2023-36132 Unspecified vulnerability in PHPjabbers Availability Booking Calendar 5.0
PHP Jabbers Availability Booking Calendar 5.0 is vulnerable to Incorrect Access Control.
network
low complexity
phpjabbers
critical
9.8
2023-08-04 CVE-2023-36133 Unspecified vulnerability in PHPjabbers Availability Booking Calendar 5.0
PHPJabbers Availability Booking Calendar 5.0 is vulnerable to User Account Takeover through username/password change.
network
low complexity
phpjabbers
critical
9.8