CVE-2018-20816

CVE-2018-20816

An XSS combined with CSRF vulnerability discovered in SalesAgility SuiteCRM 7.x before 7.8.24 and 7.10.x before 7.10.11 leads to cookie stealing, aka session hijacking. This issue affects the "add dashboard pages" feature where users can receive a malicious attack through a phished URL, with script executed.

Source: CVE-2018-20816

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다