CVE-2020-23647
EUVD-2020-1639028.04.2023, 20:15
Cross Site Scripting (XSS) vulnerability in BoxBilling 4.19, 4.19.1, 4.20, and 4.21 allows remote attackers to run arbitrary code via the message field on the submit new ticket form.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| boxbilling | boxbilling | 4.19 |
| boxbilling | boxbilling | 4.19.1 |
| boxbilling | boxbilling | 4.20 |
| boxbilling | boxbilling | 4.21 |
𝑥
= Vulnerable software versions