Cross-Site Scripting Vulnerabilities in Joomla! Multi Calendar Component
CVE-2013-5953

Currently unrated

Key Information:

Vendor

Codepeople

Vendor
CVE Published:
19 March 2014

What is CVE-2013-5953?

The Multi Calendar component for Joomla! exhibits multiple cross-site scripting (XSS) vulnerabilities in the tmpl/layout_editevent.php file. This issue allows remote attackers to inject arbitrary web scripts or HTML, specifically through the 'calid' or 'paletteDefault' parameters during the editevent action on index.php. Exploiting this vulnerability could lead to unauthorized actions and compromise user sessions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.