Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-46478

    An issue in minCal v.1.0.0 allows a remote attacker to execute arbitrary code via a crafted script to the customer_data parameter.

    Last Modified: Nov 21, 2024
    Published: Oct 30, 2023

    CVE-2023-3307

    miniCal sql injection

    Last Modified: Nov 21, 2024
    Published: Jun 18, 2023

    CVE-2023-33408

    Minical 1.0.0 is vulnerable to Cross Site Scripting (XSS). The vulnerability exists due to insufficient input validation in the application's user input handling in the security_helper.php file.

    Last Modified: Jan 08, 2025
    Published: Jun 05, 2023

    CVE-2023-33409

    Minical 1.0.0 is vulnerable to Cross Site Request Forgery (CSRF) via minical/public/application/controllers/settings/company.php.

    Last Modified: Jan 08, 2025
    Published: Jun 05, 2023

    CVE-2023-33410

    Minical 1.0.0 and earlier contains a CSV injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on the Customer Name field in the Accounting module that is used to construct a CSV file.

    Last Modified: Jan 08, 2025
    Published: Jun 05, 2023
    Items Per Page