PT-2018-13113 · Salesagility · Suitecrm
Published
2018-09-26
·
Updated
2018-11-15
·
CVE-2018-15606
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
SalesAgility SuiteCRM versions 7.x through 7.8.20
SalesAgility SuiteCRM versions 7.10.x through 7.10.7
Description
A cross-site scripting (XSS) issue was found, related to phishing an error message.
Recommendations
For SalesAgility SuiteCRM versions 7.x through 7.8.20, update to version 7.8.21 or later.
For SalesAgility SuiteCRM versions 7.10.x through 7.10.7, update to version 7.10.8 or later.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Suitecrm