VendorsVtigervtiger_crm7.2.0
Vulnerabilities

Vtiger vtiger CRM 7.2.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2020-22807
An issue was dicovered in vtiger crm 7.2. Union sql injection in the calendar exportdata feature.
Published 2021-04-29 · Modified
9.8EPSS 0.013
CVE-2020-19363
Vtiger CRM v7.2.0 allows an attacker to display hidden files, list directories by using /libraries and /layout directories.
Published 2021-01-20 · Modified
6.5EPSS 0.036
CVE-2020-19362
Reflected XSS in Vtiger CRM v7.2.0 in vtigercrm/index.php? through the view parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-party web page.
Published 2021-01-20 · Modified
6.1EPSS 0.007