PT-2024-23491 · Scientech It Solution · Appointment Calendar

Dimas Maulana

·

Published

2024-03-31

·

Updated

2024-04-01

·

CVE-2024-30561

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Scientech It Solution Appointment Calendar versions through 2.9.6
Description The issue affects the Appointment Calendar, allowing for Reflected XSS due to improper neutralization of input during web page generation.
Recommendations For versions through 2.9.6, update to a version that contains a fix for this issue to prevent Reflected XSS attacks.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-30561

Affected Products

Appointment Calendar