RSS   Vulnerabilities for 'Axon pbx'   RSS

2021-07-25
 
CVE-2021-37453

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the extension name (stored).

 
 
CVE-2021-37454

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the line name (stored).

 
 
CVE-2021-37455

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the outbound dialing plan (stored).

 
 
CVE-2021-37456

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the blacklist IP address (stored).

 
 
CVE-2021-37457

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the SipRule field (stored).

 
 
CVE-2021-37458

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the primary phone field (stored).

 
 
CVE-2021-37459

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via the customer name field (stored).

 
 
CVE-2021-37460

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via /planprop?id= (reflected).

 
 
CVE-2021-37461

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via /extensionsinstruction?id= (reflected).

 
 
CVE-2021-37462

CWE-79
 

 
Cross Site Scripting (XSS) exists in NCH Axon PBX v2.22 and earlier via /ipblacklist?errorip= (reflected).

 


Copyright 2024, cxsecurity.com

 

Back to Top