Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

Multiple Cross-Site Scripting (XSS) vulnerabilities exist in Simple Online Planning (SOPlanning) before 1.33 via the document.cookie in nb_mois and mb_ligness and the debug GET parameter to export.php, which allows malicious users to execute arbitrary code.

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.