CVE-2013-5693
30.09.2013, 22:55
Cross-site scripting (XSS) vulnerability in X2Engine X2CRM before 3.5 allows remote attackers to inject arbitrary web script or HTML via the model parameter to index.php/admin/editor.
Vendor | Product | Version |
---|---|---|
x2engine | x2crm | 𝑥 ≤ 3.4.1 |
x2engine | x2crm | 1.0 |
x2engine | x2crm | 1.0.1 |
x2engine | x2crm | 1.1.0 |
x2engine | x2crm | 1.2.0 |
x2engine | x2crm | 1.2.1 |
x2engine | x2crm | 1.2.2 |
x2engine | x2crm | 1.3 |
x2engine | x2crm | 1.3.1 |
x2engine | x2crm | 2.2 |
x2engine | x2crm | 2.2.1 |
x2engine | x2crm | 2.5 |
x2engine | x2crm | 2.5.2 |
x2engine | x2crm | 2.7 |
x2engine | x2crm | 2.7.1 |
x2engine | x2crm | 2.7.2 |
x2engine | x2crm | 2.8 |
x2engine | x2crm | 2.8.1 |
x2engine | x2crm | 2.9 |
x2engine | x2crm | 2.9.1 |
x2engine | x2crm | 3.0 |
x2engine | x2crm | 3.0.1 |
x2engine | x2crm | 3.0.2 |
x2engine | x2crm | 3.1 |
x2engine | x2crm | 3.1.1 |
x2engine | x2crm | 3.1.2 |
x2engine | x2crm | 3.2 |
x2engine | x2crm | 3.3 |
x2engine | x2crm | 3.3.1 |
x2engine | x2crm | 3.3.2 |
x2engine | x2crm | 3.4 |
𝑥
= Vulnerable software versions
References