CVE-2025-40643
- EPSS 0.07%
- Veröffentlicht 23.10.2025 10:46:10
- Zuletzt bearbeitet 31.10.2025 19:36:31
Stored Cross-Site Scripting (XSS) vulnerability in Energy CRM v2025 by Status Tracker Ltd, consisting of a stored XSS due to lack of proper validation of user input by sending a POST request to “/crm/create_job_submit.php”, using the “JobCreatedBy” p...
CVE-2025-40640
- EPSS 0.07%
- Veröffentlicht 10.10.2025 08:19:33
- Zuletzt bearbeitet 03.11.2025 16:17:01
Stored Cross-Site Scripting (XSS) vulnerability in Energy CRM v2025 by Status Tracker Ltd, consisting of a stored XSS due to lack of proper validation of user input by sending a POST request to “/crm/create_invoice_submit.php”, using the “customerNam...
CVE-2025-40646
- EPSS 0.03%
- Veröffentlicht 02.10.2025 10:15:38
- Zuletzt bearbeitet 03.11.2025 15:15:59
Stored Cross-Site Scripting (XSS) vulnerability in Energy CRM v2025 by Status Tracker Ltd, consisting of a stored XSS due to lack of proper validation of user input by sending a POST request to “/crm/create_job_submit.php”, using the “JobCreatedBy” p...