Логотип exploitDog
bind:CVE-2018-20816
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-20816

Количество 2

Количество 2

nvd логотип

CVE-2018-20816

почти 7 лет назад

An XSS combined with CSRF vulnerability discovered in SalesAgility SuiteCRM 7.x before 7.8.24 and 7.10.x before 7.10.11 leads to cookie stealing, aka session hijacking. This issue affects the "add dashboard pages" feature where users can receive a malicious attack through a phished URL, with script executed.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-m8mc-2q3x-mw37

больше 3 лет назад

An XSS combined with CSRF vulnerability discovered in SalesAgility SuiteCRM 7.x before 7.8.24 and 7.10.x before 7.10.11 leads to cookie stealing, aka session hijacking. This issue affects the "add dashboard pages" feature where users can receive a malicious attack through a phished URL, with script executed.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-20816

An XSS combined with CSRF vulnerability discovered in SalesAgility SuiteCRM 7.x before 7.8.24 and 7.10.x before 7.10.11 leads to cookie stealing, aka session hijacking. This issue affects the "add dashboard pages" feature where users can receive a malicious attack through a phished URL, with script executed.

CVSS3: 6.1
0%
Низкий
почти 7 лет назад
github логотип
GHSA-m8mc-2q3x-mw37

An XSS combined with CSRF vulnerability discovered in SalesAgility SuiteCRM 7.x before 7.8.24 and 7.10.x before 7.10.11 leads to cookie stealing, aka session hijacking. This issue affects the "add dashboard pages" feature where users can receive a malicious attack through a phished URL, with script executed.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу