Show filters
146 Total Results
Displaying 31-40 of 146
Sort by:
Attacker Value
Unknown

CVE-2023-24655

Disclosure Date: March 23, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the name parameter under the Profile Update function.
Attacker Value
Unknown

CVE-2023-24732

Disclosure Date: March 15, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 as discovered to contain a SQL injection vulnerability via the gender parameter in the user profile update function.
Attacker Value
Unknown

CVE-2023-24731

Disclosure Date: March 15, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 as discovered to contain a SQL injection vulnerability via the query parameter in the user profile update function.
Attacker Value
Unknown

CVE-2023-24730

Disclosure Date: March 15, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 as discovered to contain a SQL injection vulnerability via the company parameter in the user profile update function.
Attacker Value
Unknown

CVE-2023-24729

Disclosure Date: March 15, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 as discovered to contain a SQL injection vulnerability via the address parameter in the user profile update function.
Attacker Value
Unknown

CVE-2023-24728

Disclosure Date: March 15, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 as discovered to contain a SQL injection vulnerability via the contact parameter in the user profile update function.
Attacker Value
Unknown

CVE-2022-23791

Disclosure Date: March 14, 2023 (last updated November 08, 2023)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firmanet Software and Technology Customer Relation Manager allows Cross-Site Scripting (XSS).This issue affects Customer Relation Manager: before 2022.03.13.
Attacker Value
Unknown

CVE-2022-23790

Disclosure Date: March 14, 2023 (last updated November 08, 2023)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firmanet Software and Technology Customer Relation Manager allows Cross-Site Scripting (XSS).This issue affects Customer Relation Manager: before 2022.03.13.
Attacker Value
Unknown

CVE-2021-4195

Disclosure Date: March 14, 2023 (last updated November 08, 2023)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firmanet Software and Technology Customer Relation Manager allows XSS Targeting HTML Attributes.This issue affects Customer Relation Manager: before 2022.03.13.
Attacker Value
Unknown

CVE-2023-24656

Disclosure Date: February 27, 2023 (last updated October 08, 2023)
Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the subject parameter under the Create Ticket function.