VYPR
Unrated severityNVD Advisory· Published Jun 30, 2022· Updated Apr 15, 2025

Bitrix Site Manager Contact Form cross site scripting

CVE-2017-20122

Description

A vulnerability classified as problematic was found in Bitrix Site Manager 12.06.2015. Affected by this vulnerability is an unknown functionality of the component Contact Form. The manipulation of the argument text with the input leads to basic cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.