First published: Wed Sep 26 2018(Updated: )
An XSS issue was discovered in SalesAgility SuiteCRM 7.x before 7.8.21 and 7.10.x before 7.10.8, related to phishing an error message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SugarCRM | >=7.0.0<7.8.21 | |
SugarCRM | >=7.10.0<7.10.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15606 has a moderate severity level due to its cross-site scripting (XSS) vulnerability.
To fix CVE-2018-15606, you need to upgrade SuiteCRM to version 7.8.21 or 7.10.8 or a later version.
CVE-2018-15606 affects SuiteCRM versions prior to 7.8.21 and 7.10.8.
CVE-2018-15606 could potentially allow attackers to perform phishing attacks through crafted error messages.
CVE-2018-15606 is one of the known vulnerabilities in older SuiteCRM versions, highlighting the importance of timely updates.