Описание
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, an unverified IFrame can be added some some inputs, which could allow for a cross-site scripting attack. Versions 7.14.4 and 8.6.1 contain a fix for this issue.
Уязвимые конфигурации
Конфигурация 1Версия до 7.14.4 (исключая)Версия от 8.0.0 (включая) до 8.6.1 (исключая)
Одно из
cpe:2.3:a:salesagility:suitecrm:*:*:*:*:*:*:*:*
cpe:2.3:a:salesagility:suitecrm:*:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00793
Низкий
5.7 Medium
CVSS3
9 Critical
CVSS3
Дефекты
CWE-79
CWE-79
EPSS
Процентиль: 73%
0.00793
Низкий
5.7 Medium
CVSS3
9 Critical
CVSS3
Дефекты
CWE-79
CWE-79