Логотип exploitDog
bind:CVE-2022-48177
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-48177

Количество 2

Количество 2

nvd логотип

CVE-2022-48177

почти 3 года назад

X2CRM Open Source Sales CRM 6.6 and 6.9 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the adin/importModels Import Records Model field (model parameter). This vulnerability allows attackers to create malicious JavaScript that will be executed by the victim user's browser.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-ghq5-x3rp-2r5m

почти 3 года назад

X2CRM Open Source Sales CRM 6.6 and 6.9 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the adin/importModels Import Records Model field (model parameter). This vulnerability allows attackers to create malicious JavaScript that will be executed by the victim user's browser.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-48177

X2CRM Open Source Sales CRM 6.6 and 6.9 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the adin/importModels Import Records Model field (model parameter). This vulnerability allows attackers to create malicious JavaScript that will be executed by the victim user's browser.

CVSS3: 5.4
2%
Низкий
почти 3 года назад
github логотип
GHSA-ghq5-x3rp-2r5m

X2CRM Open Source Sales CRM 6.6 and 6.9 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the adin/importModels Import Records Model field (model parameter). This vulnerability allows attackers to create malicious JavaScript that will be executed by the victim user's browser.

CVSS3: 6.1
2%
Низкий
почти 3 года назад

Уязвимостей на страницу