CVE-2023-36132
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Aug 4, 2023
Updated: Nov 7, 2023
Summary
CVE-2023-36132 represents a vulnerability in the PHP Jabbers Availability Booking Calendar version 5.0. This issue stems from incorrect access control measures, enabling unauthorized users to gain sensitive information or perform unintended actions within the system. The specifics of the vulnerability allow attackers to bypass authentication or authorization checks, potentially leading to data breaches or other malicious activities. Users are strongly advised to update their calendar software to a secure version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- PHPJabbers