CVE-2024-44777
vtiger_crm, vtiger crm
A reflected cross-site scripting (XSS) vulnerability in the tag parameter in the index page of vTiger CRM 7.4.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload.
- CVSS
- 9.6
- EPSS
- 0.68% 48.7% percentile
- CISA KEV
- Not listed
- Published
- 2024.08.30