Vulnerabilities (CVE)

Filtered by vendor Boxbilling Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-23647 1 Boxbilling 1 Boxbilling 2024-02-28 N/A 6.1 MEDIUM
Cross Site Scripting (XSS) vulnerability in BoxBilling 4.19, 4.19.1, 4.20, and 4.21 allows remote attackers to run arbitrary code via the message field on the submit new ticket form.
CVE-2022-3552 1 Boxbilling 1 Boxbilling 2024-02-28 N/A 7.2 HIGH
Unrestricted Upload of File with Dangerous Type in GitHub repository boxbilling/boxbilling prior to 0.0.1.