CVE-2018-14905: XSS
Published Aug 3, 2018
·Updated
The Web server in 3CX version 15.5.8801.3 is vulnerable to Reflected XSS on the api/CallLog TimeZoneName parameter.
Affected Software
1 affected component
3CX 3cx Web Server=15.5.8801.3
Event History
Aug 3, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-14905.
2
What is the severity level of CVE-2018-14905?
The severity level of CVE-2018-14905 is medium.
3
What software version is affected by CVE-2018-14905?
The 3CX version 15.5.8801.3 is affected by CVE-2018-14905.
4
What is the type of vulnerability for CVE-2018-14905?
CVE-2018-14905 is a Reflected XSS vulnerability.
5
Where can I find more information about CVE-2018-14905?
You can find more information about CVE-2018-14905 on the following link: https://medium.com/stolabs/security-issues-on-3cx-web-service-d9dc7f1bea79