Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-23012 1 Classroombookings 1 Classroombookings 2025-04-03 6.1 Medium
Cross Site Scripting (XSS) vulnerability in craigrodway classroombookings 2.6.4 allows attackers to execute arbitrary code or other unspecified impacts via the input bgcol in file Weeks.php.
CVE-2020-35382 1 Classroombookings 1 Classroombookings 2024-11-21 7.2 High
SQL Injection in Classbooking before 2.4.1 via the username field of a CSV file when adding a new user.