CVE-2014-2947

Bizagi Business Process Management Suite < 10.2 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Login.aspx in Bizagi BPM Suite before 10.3 allows remote attackers to inject arbitrary web script or HTML via the txtUsername parameter.

Scores

EPSS 0.0123
EPSS Percentile 79.0%

Details

CWE
CWE-79
Status published
Products (5)
bizagi/business_process_management_suite < 10.2
bizagi/business_process_management_suite
bizagi/business_process_management_suite
bizagi/business_process_management_suite
n/a/n/a
Published May 22, 2014
Tracked Since Feb 18, 2026