cve/2023/CVE-2023-27918.md
2024-05-25 21:48:12 +02:00

838 B

CVE-2023-27918

Description

Cross-site scripting vulnerability in Appointment and Event Booking Calendar for WordPress - Amelia versions prior to 1.0.76 allows a remote unauthenticated attacker to inject an arbitrary script by having a user who is logging in the WordPress where the product is installed visit a malicious URL.

POC

Reference

No PoCs from references.

Github