Medium
CVSS 6.8
Overview
Cross-site scripting (XSS) vulnerability in export_handler.php in WebCalendar 1.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the format parameter.
Cross-site scripting (XSS) vulnerability in export_handler.php in WebCalendar 1...
Cross-site scripting (XSS) vulnerability in export_handler.php in WebCalendar 1.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the format parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: