CVE-2018-20663
03.01.2019, 19:29
The Reporting Addon (aka Reports Addon) through 2019-01-02 for CUBA Platform through 6.10.x has Persistent XSS via the "Reports > Reports" name field.
| Vendor | Product | Version |
|---|---|---|
| haulmont | cuba_platform | 𝑥 ≤ 6.10.7 |
| haulmont | reporting | 𝑥 ≤ 2019-01-02 |
𝑥
= Vulnerable software versions