CVE-2021-31792
XSS in the client account page in SuiteCRM before 7.11.19 allows an attacker to inject JavaScript via the name field
XSS in the client account page in SuiteCRM before 7.11.19 allows an attacker to inject JavaScript via the name field.
MEDIUM · CVSS 5.4
EPSS 0.00379
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0