Filtered by vendor Phpjabbers Subscriptions
Filtered by product Event Ticketing System Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-51339 1 Phpjabbers 1 Event Ticketing System 2025-04-17 6.5 Medium
A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Event Ticketing System v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.
CVE-2023-51337 1 Phpjabbers 1 Event Ticketing System 2025-04-10 5.4 Medium
PHPJabbers Event Ticketing System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in "lid" parameter in index.