Metrics
Affected Vendors & Products
Wed, 22 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Websystems
Websystems webtotum |
|
| Vendors & Products |
Websystems
Websystems webtotum |
Wed, 22 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Apr 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in WebSystems WebTOTUM 2026. This impacts an unknown function of the component Calendar. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Upgrading the affected component is recommended. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product. | |
| Title | WebSystems WebTOTUM Calendar cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-21T16:30:14.358Z
Updated: 2026-04-21T17:59:15.584Z
Reserved: 2026-04-21T11:56:50.965Z
Link: CVE-2026-6743
Updated: 2026-04-21T17:59:10.332Z
Status : Deferred
Published: 2026-04-21T17:16:58.157
Modified: 2026-04-22T20:22:50.570
Link: CVE-2026-6743
No data.