CVE-2018-19506

Zurmo 3.2.4 has XSS via an admin's use of the name parameter in the reports section, aka the app/index.php/reports/default/details?id=1 URI.
References
Configurations

Configuration 1

cpe:2.3:a:zurmo:zurmo:3.2.4:*:*:*:*:*:*:*

Information

Published : 2018-12-19 07:29

Updated : 2019-02-26 02:44


NVD link : CVE-2018-19506

Mitre link : CVE-2018-19506

Products Affected
No products.
CWE