Known vulnerabilities in Calendar01
Vendor:
PHP Factory
Software:
Calendar01
Software CPE:
cpe:2.3:a:php_factory:calendar01:*:*:*:*:*:*:*:*
Website:
https://www.php-factory.net/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.3
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU53407 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2021-20725 |
CWE-79 | Low | 1.0.2 | 21.05.2021 |
SB2021052103 |
||
| #VU32978 - Improper Authentication CVE-2020-5616 |
CWE-287 | Medium | 1.0.1 | 03.08.2020 |
SB2020080302 |
||
| #VU32977 - Cross-Site Request Forgery (CSRF) CVE-2020-5615 |
CWE-352 | Low | 1.0.1 | 03.08.2020 |
SB2020080302 |