CVE-2023-47175
20.11.2023, 05:15
Cross-site scripting vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior to 5.2.4L (SQLite version) allows a remote unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the product.
Vendor | Product | Version |
---|---|---|
luxsoft | luxcal_web_calendar | 𝑥 < 5.2.4l |
luxsoft | luxcal_web_calendar | 𝑥 < 5.2.4m |
𝑥
= Vulnerable software versions