6.1

CVSS3.1

CVE-2023-51299 -

PHPJabbers Hotel Booking System v4.0 is vulnerable to HTML Injection in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

4.7

CVSS3.1

CVE-2023-51298 -

PHPJabbers Event Booking Calendar v4.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: April 22, 2025, 8:01 p.m.

5.4

CVSS3.1

CVE-2023-51305 -

PHPJabbers Car Park Booking System v3.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2025-25945 -

An issue in Bento4 v1.6.0-641 allows an attacker to obtain sensitive information via the the Mp4Fragment.cpp and in AP4_DescriptorFactory::CreateDescriptorFromStream at Ap4DescriptorFactory.cpp.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: May 13, 2025, 2:02 p.m.

7.3

CVSS3.1

CVE-2025-25944 -

Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary code via the Ap4RtpAtom.cpp, specifically in AP4_RtpAtom::AP4_RtpAtom, during the execution of mp4fragment with a crafted MP4 input file.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: May 13, 2025, 2:02 p.m.

6.1

CVSS3.1

CVE-2020-13481 -

Certain Lexmark products through 2020-05-25 allow XSS which allows an attacker to obtain session credentials and other sensitive information.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 20, 2025, 4:15 p.m.

6.1

CVSS3.1

CVE-2023-51300 -

PHPJabbers Hotel Booking System v4.0 is vulnerable to Cross-Site Scripting (XSS) vulnerabilities in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.1

CVSS3.1

CVE-2023-51296 -

PHPJabbers Event Booking Calendar v4.0 is vulnerable to Cross-Site Scripting (XSS) in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters which allows attackers to execute arbitrary code

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2025-25942 -

An issue in Bento4 v1.6.0-641 allows an attacker to obtain sensitive information via the the mp4fragment tool when processing invalid files. Specifically, memory allocated in SampleArray::SampleArray in Mp4Fragment.cpp is not properly released.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: May 13, 2025, 2:02 p.m.

5.5

CVSS3.1

CVE-2025-25947 -

An issue in Bento4 v1.6.0-641 allows an attacker to trigger a segmentation fault via Ap4Atom.cpp, specifically in AP4_AtomParent::RemoveChild, during the execution of mp4encrypt with a specially crafted MP4 input file.

๐Ÿ“… Published: Feb. 19, 2025, midnight ๐Ÿ”„ Last Modified: May 13, 2025, 2:02 p.m.
Total resulsts: 343944
Page 6168 of 34,395
ยซ previous page ยป next page
Filters