VYPR
Low severity3.5NVD Advisory· Published Jun 30, 2022· Updated Jun 17, 2026

CVE-2017-20122

CVE-2017-20122

Description

A vulnerability classified as problematic was found in Bitrix Site Manager 12.06.2015. Affected by this vulnerability is an unknown functionality of the component Contact Form. The manipulation of the argument text with the input leads to basic cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

3
  • cpe:2.3:a:bitrix24:bitrix_site_manager:12.06.2015:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:bitrix24:bitrix_site_manager:12.06.2015:*:*:*:*:*:*:*
    • (no CPE)range: <=12.06.2015
    • (no CPE)range: 12.06.2015

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.