Low severity3.5NVD Advisory· Published Jun 30, 2022· Updated Jun 17, 2026
CVE-2017-20122
CVE-2017-20122
Description
A vulnerability classified as problematic was found in Bitrix Site Manager 12.06.2015. Affected by this vulnerability is an unknown functionality of the component Contact Form. The manipulation of the argument text with the input leads to basic cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
3cpe:2.3:a:bitrix24:bitrix_site_manager:12.06.2015:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:bitrix24:bitrix_site_manager:12.06.2015:*:*:*:*:*:*:*
- (no CPE)range: <=12.06.2015
- (no CPE)range: 12.06.2015
Patches
Vulnerability mechanics
References
2- seclists.org/fulldisclosure/2017/Feb/3nvdExploitMailing ListThird Party Advisory
- vuldb.comnvdThird Party Advisory
News mentions
0No linked articles in our index yet.