CVE-2024-48119

Vtiger CRM v8.2.0 has a HTML Injection vulnerability in the module parameter. Authenticated users can inject arbitrary HTML.
Configurations

Configuration 1 (hide)

cpe:2.3:a:vtiger:vtiger_crm:8.2.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-10-14 14:15

Updated : 2024-10-30 14:32


NVD link : CVE-2024-48119

Mitre link : CVE-2024-48119

CVE.ORG link : CVE-2024-48119


JSON object : View

Products Affected

vtiger

  • vtiger_crm
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')