CVE-2020-23647
28.04.2023, 20:15
Cross Site Scripting (XSS) vulnerability in BoxBilling 4.19, 4.19.1, 4.20, and 4.21 allows remote attackers to run arbitrary code via the message field on the submit new ticket form.
Vendor | Product | Version |
---|---|---|
boxbilling | boxbilling | 4.19 |
boxbilling | boxbilling | 4.19.1 |
boxbilling | boxbilling | 4.20 |
boxbilling | boxbilling | 4.21 |
𝑥
= Vulnerable software versions