Описание
ChurchCRM is an open-source church management system. Versions prior to 6.5.3 have a stored cross-site scripting vulnerability on the pages View Active People, View Inactive people, and View All People. Version 6.5.3 fixes the issue.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 6.5.3 (исключая)
cpe:2.3:a:churchcrm:churchcrm:*:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.00042
Низкий
4.8 Medium
CVSS3
Дефекты
CWE-79
EPSS
Процентиль: 12%
0.00042
Низкий
4.8 Medium
CVSS3
Дефекты
CWE-79