Tmsproducts develops Amelia, a web-based scheduling and management application, with its vulnerability profile centered on application-layer input-handling and authorization issues such as cross-site scripting and missing authorization controls. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tmsproducts over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-1484MEDIUM The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the date parameters in all versions up to, and in | Mar 13, 2024 | 6.1 | 20 | NO | NO |
CVE-2024-6332MEDIUM The Booking for Appointments and Events Calendar – Amelia Premium and Lite plugins for WordPress are vulnerable to unauthorized access of data due to a missing capability check on | Sep 5, 2024 | 6.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tmsproducts.
Media articles that mention a CVE ID that affects a product developed by Tmsproducts — matched by CVE ID, not by vendor name.