CVE-2022-40361 Information

Description

Cross Site Scripting Vulnerability in Elite CRM v1.2.11 allows attacker to execute arbitrary code via the language parameter to the /ngs/login endpoint.

Reference

https://elitecrm.co/ https://hazemhussien99.wordpress.com/2024/01/07/cve-2022-40361-disclosure/

Share on: