CVE-2022-47073
EUVD-2022-4985026.01.2023, 21:18
A cross-site scripting (XSS) vulnerability in the Create Ticket page of Small CRM v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Subject parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| small_crm_project | small_crm | 3.0 |
𝑥
= Vulnerable software versions
References