PT-2023-30976 · Unknown · Time Slots Booking Calendar

Published

2023-12-06

·

Updated

2023-12-09

·

CVE-2023-48833

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Time Slots Booking Calendar version 4.0
Description A lack of rate limiting in the pjActionAJaxSend function allows attackers to cause resource exhaustion.
Recommendations For Time Slots Booking Calendar version 4.0, consider implementing rate limiting for the pjActionAJaxSend function to prevent resource exhaustion until a patch is available.

Exploit

Fix

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2023-48833

Affected Products

Time Slots Booking Calendar