Логотип exploitDog
bind:CVE-2020-21088
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-21088

Количество 2

Количество 2

nvd логотип

CVE-2020-21088

почти 5 лет назад

Cross Site Scripting (XSS) in X2engine X2CRM v7.1 and older allows remote attackers to obtain sensitive information by injecting arbitrary web script or HTML via the "First Name" and "Last Name" fields in "/index.php/contacts/create page"

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-mc2f-4vmr-c74r

больше 3 лет назад

Cross Site Scripting (XSS) in X2engine X2CRM v7.1 and older allows remote attackers to obtain sensitive information by injecting arbitrary web script or HTML via the "First Name" and "Last Name" fields in "/index.php/contacts/create page"

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-21088

Cross Site Scripting (XSS) in X2engine X2CRM v7.1 and older allows remote attackers to obtain sensitive information by injecting arbitrary web script or HTML via the "First Name" and "Last Name" fields in "/index.php/contacts/create page"

CVSS3: 4.8
0%
Низкий
почти 5 лет назад
github логотип
GHSA-mc2f-4vmr-c74r

Cross Site Scripting (XSS) in X2engine X2CRM v7.1 and older allows remote attackers to obtain sensitive information by injecting arbitrary web script or HTML via the "First Name" and "Last Name" fields in "/index.php/contacts/create page"

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу