Medium severity6.1NVD Advisory· Published Jan 10, 2025· Updated Jun 17, 2026
CVE-2024-54687
CVE-2024-54687
Description
Vtiger CRM v.6.1 and before is vulnerable to Cross Site Scripting (XSS) via the Documents module and function uploadAndSaveFile in CRMEntity.php.
Affected products
2Patches
Vulnerability mechanics
References
2- andrea0.medium.com/analysis-of-cve-2024-54687-9d82f4c0eaa8nvdExploitThird Party Advisory
- andrea0.medium.comnvdThird Party Advisory
News mentions
0No linked articles in our index yet.