Medium severity5.4NVD Advisory· Published Dec 7, 2023· Updated Jun 17, 2026
CVE-2023-48839
CVE-2023-48839
Description
Appointment Scheduler 3.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) issues via the name, plugin_sms_api_key, plugin_sms_country_code, calendar_id, title, country name, or customer_name parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:phpjabbers:appointment_scheduler:3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:phpjabbers:appointment_scheduler:3.0:*:*:*:*:*:*:*
- (no CPE)range: <3.0
- Appointment Scheduler/Appointment Schedulerdescription
- Range: <3.0
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/176055nvdThird Party AdvisoryVDB Entry
- www.phpjabbers.com/appointment-scheduler/nvdProduct
News mentions
0No linked articles in our index yet.