Security Advisory

CVE-2024-44778

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-29 00:00:00
Last updated 2024-08-29 19:05:39
Assigner mitre
State PUBLISHED

Description

A reflected cross-site scripting (XSS) vulnerability in the parent parameter in the index page of vTiger CRM 7.4.0 allows attackers to execute arbitrary code in the context of a users browser via injecting a crafted payload.