Description
Stored Cross-Site Scripting (XSS) vulnerability in the Company field in the "Request a Quote" Section of Small CRM v3.0 allows an attacker to store and execute malicious javascript code in the Admin panel which leads to Admin account takeover.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-49686 | Stored Cross-Site Scripting (XSS) vulnerability in the Company field in the "Request a Quote" Section of Small CRM v3.0 allows an attacker to store and execute malicious javascript code in the Admin panel which leads to Admin account takeover. |
References
| Link | Providers |
|---|---|
| https://github.com/kartik753/CVE/blob/main/CVE-2023-45394 |
|
History
Thu, 26 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-12T14:47:39.078Z
Reserved: 2023-10-09T00:00:00.000Z
Link: CVE-2023-45394
Updated: 2024-08-02T20:21:16.207Z
Status : Modified
Published: 2023-10-20T04:15:10.237
Modified: 2024-11-21T08:26:53.407
Link: CVE-2023-45394
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD