CVE Published: 20/11/2023 |
CVE Updated: 29/08/2024 |
CVE Year: 2023 Source: jpcert |
Vendor: LuxSoft |
Product: LuxCal Web Calendar Status : PUBLISHED
CVE-2023-47175 Description
Cross-site scripting vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior to 5.2.4L (SQLite version) allows a remote unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the product.