CVE-2021-4116

MEDIUM6.6EPSS 0.15%

yetiforcecrm is vulnerable to Cross-site Scripting

發布日:2021/12/16修改日:2023/11/8

描述

yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.6CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:H

參考連結(4)