CremeCRM是一套客户关系管理系统。该系统具有销售自动化、客户服务和收发电子邮件等功能。 CremeCRM 1.6.12版本中的contact creation and modification页面存在跨站脚本漏洞。远程攻击者可借助多个参数利用该漏洞在客户端访问受影响页面时执行JavaScript代码。(多个参数包括:‘firstname’,‘lastname’,‘billing_address-address’,‘billing_address-zipcode’,‘billing_address-c
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-16710 | OctoPrint 安全漏洞 | |
| CVE-2018-16655 | Gxlcms 跨站脚本漏洞 | |
| CVE-2018-16654 | Zurmo 跨站脚本漏洞 | |
| CVE-2018-16653 | rejucms 跨站脚本漏洞 | |
| CVE-2018-16651 | phpMyFAQ 安全漏洞 | |
| CVE-2018-16650 | phpMyFAQ 跨站请求伪造漏洞 | |
| CVE-2018-16658 | Linux kernel 信息泄露漏洞 | |
| CVE-2018-16657 | Kamailio 代码问题漏洞 | |
| CVE-2018-16704 | Gleez CMS 信息泄露漏洞 | |
| CVE-2018-16703 | Gleez CMS 安全漏洞 | |
| CVE-2018-16667 | Contiki-NG 安全漏洞 | |
| CVE-2018-16666 | Contiki-NG 缓冲区错误漏洞 | |
| CVE-2018-16665 | Contiki-NG 缓冲区错误漏洞 | |
| CVE-2018-16664 | Contiki-NG 缓冲区错误漏洞 | |
| CVE-2018-16663 | Contiki-NG 缓冲区错误漏洞 | |
| CVE-2017-17691 | Homeputer CL Studio fur HomeMatic 安全漏洞 | |
| CVE-2018-16709 | 多款Fuji Xerox产品安全漏洞 | |
| CVE-2018-16454 | PHP Scripts Mall Olx Clone 跨站脚本漏洞 | |
| CVE-2018-16363 | WordPress mndpsingh287 File Manager插件跨站脚本漏洞 | |
| CVE-2018-16059 | Endress+Hauser WirelessHART Fieldgate SWG70 路径遍历漏洞 |
Showing top 20 of 31 CVEs. View all on vendor page → →
No comments yet