Advisory from Netsparker - Zurmo 2.3.4 - Stored XSS, Reflected XSS, SQLi, Code Evalution(PHP)

Issue #451 new
Daniel Bishtawi created an issue

Hello,

While testing the Netsparker web application security scanner we identified Stored XSS, Reflected XSS, SQLi, Code Evalution(PHP) vulnerabilities in Zurmo 2.3.4. Can you please advise whom shall we contact to disclose the vulnerability details so it can be fixed?

Please email me at daniel@netsparker.com for the technical details.

Looking forward to hearing from you.

Regards,

Daniel Bishtawi
Marketing Administrator | Netsparker Web Application Security Scanner

Comments (0)

  1. Log in to comment