📦 Esoft Planner

by Esoftplanner

🔍 What is Esoft Planner?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-48530

HIGH CVSS 7.5 Nov 20, 2024

This vulnerability in eSoft Planner's Instructor Appointment Availability module allows attackers to cause a Denial of Service (DoS) by sending specially crafted POST requests. The attack disrupts ser...

CVE-2024-48536

HIGH CVSS 7.5 Nov 20, 2024

This vulnerability allows attackers to bypass access controls in eSoft Planner 3.24.08271-USA by sending specially crafted web requests, enabling unauthorized viewing of all company transactions. Any ...

CVE-2024-48533

MEDIUM CVSS 5.3 Nov 20, 2024

This vulnerability allows attackers to determine which email addresses have valid user accounts in eSoft Planner by observing different responses from the 'Forgot your Login?' module. This affects all...

CVE-2024-48535

MEDIUM CVSS 5.4 Nov 20, 2024

A stored cross-site scripting (XSS) vulnerability in eSoft Planner allows attackers to inject malicious scripts into the Name parameter, which are then executed when other users view the affected cont...