Medium severity5.4NVD Advisory· Published Dec 7, 2023· Updated Jun 17, 2026
CVE-2023-48828
CVE-2023-48828
Description
Time Slots Booking Calendar 4.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) issues via the name, plugin_sms_api_key, plugin_sms_country_code, calendar_id, title, country name, or customer_name parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:phpjabbers:time_slots_booking_calendar:4.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:phpjabbers:time_slots_booking_calendar:4.0:*:*:*:*:*:*:*
- (no CPE)range: <4.0
- Time Slots Booking Calendar/Time Slots Booking Calendardescription
- Range: <4.0
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/176037nvdExploitThird Party AdvisoryVDB Entry
- www.phpjabbers.com/time-slots-booking-calendar/nvdProduct
News mentions
0No linked articles in our index yet.