dwbooster Vulnerabilities and Affected Products
Vulnerabilities associated with calendar_event_multi_view.
Products
Clear product- Booking Calendar Contact Form3 vulnerabilities
- CP Polls2 vulnerabilities
- Booking Calendar Contact1 vulnerability
- calendar_event_multi_view1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2021-24498MEDIUM | Calendar Event Multi View < 1.4.01 - Unauthenticated Reflected Cross-Site Scripting (XSS)The Calendar Event Multi View WordPress plugin before 1.4.01 does not sanitise or escape the 'start' and 'end' GET parameters before outputting them in the page (via php/edit.php), leading to a reflected Cross-Site Scripting issue. | CVSS6.1v3.1 | EPSS3.54% | PoCs2 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |