X2CRM Open Source Sales CRM 6.6 and 6.9...... CVE-2022-48177

- AV AC AU C I A
发布: 2023-04-15
修订: 2025-02-06

X2CRM Open Source Sales CRM 6.6 and 6.9 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the adin/importModels Import Records Model field (model parameter). This vulnerability allows attackers to create malicious JavaScript that will be executed by the victim user's browser.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息