Vulnerabilities
Vulnerable Software
Tine20:  >> Tine 2.0  >> 2017.08.3  Security Vulnerabilities
Stored XSS vulnerability via IMG element at "Filename" of Filemanager in Tine 2.0 Community Edition before 2017.08.4 allows an authenticated user to inject JavaScript, which is mishandled during rendering by the application administrator and other users.
CVSS Score
5.4
EPSS Score
0.003
Published
2017-09-30
Stored XSS vulnerability via IMG element at "History" of Profile, Calendar, Tasks, and CRM in Tine 2.0 Community Edition before 2017.08.4 allows an authenticated user to inject JavaScript, which is mishandled during rendering by the application administrator and other users.
CVSS Score
5.4
EPSS Score
0.003
Published
2017-09-30
Stored XSS vulnerability via IMG element at "Leadname" of CRM in Tine 2.0 Community Edition before 2017.08.4 allows an authenticated user to inject JavaScript, which is mishandled during rendering by the application administrator and other users.
CVSS Score
5.4
EPSS Score
0.003
Published
2017-09-30


Contact Us

Shodan ® - All rights reserved