CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2023-36134
Severity
CRITICAL
CVSS
9.8
EPSS
0.42%
Original NVD Description
In PHP Jabbers Class Scheduling System 1.0, lack of verification when changing an email address and/or password (on the Profile Page) allows remote attackers to take over accounts.
Related CVEs
Other vulnerabilities affecting the same vendor(s)