A vulnerability classified as problematic has been found in MotoPress Timetable and Event Schedule up to 1.4.06. This affects an unknown part of the file /wp/?cpmvc_id1&cpmvc_do_actionmvparse&fdatafeed&calid1&month_index1&methodadddetails&id2 of the component Calendar Handler. The manipulation of the argument Subject/Location/Description leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-206487.
Publication date: Wed, 17 Aug 2022 00:15:00 +0000