Stored XSS exists in the Appointment... CVE-2020-9371

3.5 AV AC AU C I A
发布: 2020-03-04
修订: 2024-11-21

Stored XSS exists in the Appointment Booking Calendar plugin before 1.3.35 for WordPress. In the cpabc_appointments.php file, the Calendar Name input could allow attackers to inject arbitrary JavaScript or HTML.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息