Vulnerabilities > 1Crm

DATE CVE VULNERABILITY TITLE RISK
2020-09-18 CVE-2020-15958 Authorization Bypass Through User-Controlled Key vulnerability in 1Crm 8.5.7/8.6.7
An issue was discovered in 1CRM System through 8.6.7.
network
low complexity
1crm CWE-639
8.6
2019-08-08 CVE-2019-14221 Cross-site Scripting vulnerability in 1Crm On-Premise 8.5.7
1CRM On-Premise Software 8.5.7 allows XSS via a payload that is mishandled during a Run Report operation.
network
low complexity
1crm CWE-79
5.4