CVE-2014-2947
22.05.2014, 20:55
Cross-site scripting (XSS) vulnerability in Login.aspx in Bizagi BPM Suite before 10.3 allows remote attackers to inject arbitrary web script or HTML via the txtUsername parameter.
Vendor | Product | Version |
---|---|---|
bizagi | business_process_management_suite | 𝑥 ≤ 10.2 |
bizagi | business_process_management_suite | 10.0 |
bizagi | business_process_management_suite | 10.0.1 |
bizagi | business_process_management_suite | 10.1 |
𝑥
= Vulnerable software versions