Vulnerabilities (CVE)

Filtered by vendor Perfexcrm Subscribe
Filtered by product Perfex Crm
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-28961 1 Perfexcrm 1 Perfex Crm 2021-10-28 3.5 LOW 5.4 MEDIUM
Perfex CRM v2.4.4 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the component ./clients/client via the company name parameter.
CVE-2017-17976 1 Perfexcrm 1 Perfex Crm 2018-02-08 7.5 HIGH 9.8 CRITICAL
In Utilities.php in Perfex CRM 1.9.7, Unrestricted file upload can lead to remote code execution.