NA

CVE-2024-24818

Published: 21/03/2024 Updated: 21/03/2024

Vulnerability Summary

EspoCRM is an Open Source Customer Relationship Management software. An attacker can inject arbitrary IP or domain in "Password Change" page and redirect victim to malicious page that could lead to credential stealing or another attack. This vulnerability is fixed in 8.1.2.

Github Repositories

Hi there 👋 CVEs: CVE-2024-23830 CVE-2024-24818