4
I Use This!
Activity Not Available
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
BDSA-2019-2710 Low Aug 27, 2019 Zurmo is vulnerable to an IFrame injection attack. This is a type of cross-site scripting (XSS) that allows a remote attacker to inject IFrames into a more...
BDSA-2019-2709 Medium Aug 27, 2019 Zurmo is vulnerable to PHP code injection. This allows a remote attacker to execute PHP code on the server hosting Zurmo. This can be used to upload a more...
BDSA-2019-2699 Medium Aug 23, 2019 Zurmo is vulnerable to PHP code injection. This allows a remote attacker to execute PHP code on the server hosting Zurmo. This can be used to upload a more...
BDSA-2019-2555 Low Aug 12, 2019 Zurmo is vulnerable to reflected cross-site scripting (XSS) due to improper validation of user-supplied input. This could allow an attacker to inject a more...
BDSA-2019-2554 Low Aug 12, 2019 Zurmo is vulnerable to stored cross-site scripting (XSS) due to improper validation of user-supplied input. This could allow an attacker to inject arbi more...
BDSA-2019-2553 Low Aug 12, 2019 Zurmo is vulnerable to reflected cross-site scripting (XSS) due to improper validation of user-supplied input. This could allow an attacker to inject a more...