PHP Calendars Script
Jce-Tech · 4 CVEs
CVE-2010-0380
MEDIUM
install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restricti…
Jan 22, 2010
CVE-2010-0376
MEDIUM
Cross-site scripting (XSS) vulnerability in product_list.php in JCE-Tech PHP Calendars, downloaded 2010-01-11, allows r…
Jan 21, 2010
CVE-2010-0375
HIGH
SQL injection vulnerability in product_list.php in JCE-Tech PHP Calendars, downloaded 2010-01-11, allows remote attacke…
Jan 21, 2010
CVE-2009-3197
MEDIUM
Cross-site scripting (XSS) vulnerability in search.php in JCE-Tech PHP Calendars Script allows remote attackers to inje…
Sep 15, 2009
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2010-0380 | install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via… | MEDIUM | 1.95% | Jan 22, 2010 |
| CVE-2010-0376 | Cross-site scripting (XSS) vulnerability in product_list.php in JCE-Tech PHP Calendars, downloaded 2010-01-11, allows remote attackers to inject arbitrary web… | MEDIUM | 1.50% | Jan 21, 2010 |
| CVE-2010-0375 | SQL injection vulnerability in product_list.php in JCE-Tech PHP Calendars, downloaded 2010-01-11, allows remote attackers to execute arbitrary SQL commands via… | HIGH | 1.00% | Jan 21, 2010 |
| CVE-2009-3197 | Cross-site scripting (XSS) vulnerability in search.php in JCE-Tech PHP Calendars Script allows remote attackers to inject arbitrary web script or HTML via the… | MEDIUM | 1.10% | Sep 15, 2009 |
Showing 1 to 4 of 4 CVEs