CVE-2024-44779
vtiger_crm, vtiger crm
A reflected cross-site scripting (XSS) vulnerability in the viewname parameter in the index page of vTiger CRM 7.4.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload.
- CVSS
- 9.6
- EPSS
- 0.73% 50.9% percentile
- CISA KEV
- Not listed
- Published
- 2024.08.30