WebCalendar Multiple Cross-Site...

- AV AC AU C I A
发布: 2003-09-03
修订: 2025-04-13

It has been reported that WebCalendar is prone to multiple cross-site scripting vulnerabilites in various modules. The issues exist in includes/js/colors.php, week.php, day.php, month.php, week_details.php, view_l.php, view_m.php, view_t.php, view_v.php, view_w.php, and week_details.php modules of the software. The vulneabilities may allow an attacker to create a malicious link containing HTML or sciprt code that may be rendered in a user's browser. Successful Exploitation of this issue may allow an attacker to steal cookie-based credentials. Other attacks may well be possible.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息