Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in modules.php in NukeCalendar 1.1.a, as used in PHP-Nuke, allows remote attackers to inject arbitrary web script or HTML via the eid parameter.
Software | From | Fixed in |
---|---|---|
francisco_burzi / php-nuke | 8.0_final | 8.0_final.x |
shiba-design / nukecalendar | 1.1.a | 1.1.a.x |