Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Edgard Chammas

#21596de 53,638
11.1CVSS total
Vulnerabilidades · 2
Média
2
PT-2011-1815
4.3
2011-10-07
Apphp · Calendar App · CVE-2010-4880
**Name of the Vulnerable Software and Affected Versions** ApPHP Calendar (ApPHP CAL) (affected versions not specified) **Description** The issue concerns multiple cross-site scripting (XSS) vulnerabilities. These vulnerabilities allow remote attackers to inject arbitrary web script or HTML via specific parameters, including `category name`, `category description`, `event name`, or `event description`. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2011-1816
6.8
2011-10-07
Apphp · Calendar App · CVE-2010-4881
**Name of the Vulnerable Software and Affected Versions** ApPHP Calendar (ApPHP CAL) (affected versions not specified) **Description** The issue concerns multiple cross-site request forgery (CSRF) vulnerabilities in the calendar.class.php file. These vulnerabilities allow remote attackers to hijack the authentication of victims for requests that utilize specific parameters, including `category name`, `category description`, `event name`, and `event description`. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.