CVE-2014-1237

I-doit < 1.2.3 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in synetics i-doit pro before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the call parameter.

Scores

EPSS 0.0070
EPSS Percentile 71.8%

Details

CWE
CWE-79
Status published
Products (6)
i-doit/i-doit < 1.2.3
i-doit/i-doit
i-doit/i-doit
i-doit/i-doit
i-doit/i-doit
n/a/n/a
Published Feb 11, 2014
Tracked Since Feb 18, 2026