Vulnerabilities (CVE)

Filtered by vendor Classroombookings Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-23012 1 Classroombookings 1 Classroombookings 2023-01-28 N/A 6.1 MEDIUM
Cross Site Scripting (XSS) vulnerability in craigrodway classroombookings 2.6.4 allows attackers to execute arbitrary code or other unspecified impacts via the input bgcol in file Weeks.php.
CVE-2020-35382 1 Classroombookings 1 Classroombookings 2020-12-14 6.5 MEDIUM 7.2 HIGH
SQL Injection in Classbooking before 2.4.1 via the username field of a CSV file when adding a new user.