CVE-2019-5962: XSS
Cross-site scripting vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-5962?
CVE-2019-5962 is a cross-site scripting vulnerability in Zoho SalesIQ 1.0.8 and earlier that allows remote attackers to inject arbitrary web script or HTML.
How severe is CVE-2019-5962?
CVE-2019-5962 has a severity score of 6.1, which is considered medium.
What software versions are affected by CVE-2019-5962?
The vulnerability affects Zoho SalesIQ versions up to and including 1.0.8 in Wordpress.
How can I fix CVE-2019-5962?
To fix CVE-2019-5962, update Zoho SalesIQ to a version beyond 1.0.8.
Where can I find more information about CVE-2019-5962?
You can find more information about CVE-2019-5962 at the following references: [JVN](https://jvn.jp/en/jp/JVN88962935/index.html), [WordPress Plugins](https://wordpress.org/plugins/zoho-salesiq/), [WPScan](https://wpvulndb.com/vulnerabilities/9433).