Known Vulnerabilities for Daybyday Crm by Daybydaycrm
Listed below are 5 of the newest known vulnerabilities associated with "Daybyday Crm" by "Daybydaycrm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22111 json | In DayByDay CRM, version 2.2.0 is vulnerable to missing authorization. Any application user in the application who has update... | 8.8 - HIGH | 2022-01-05 | 2022-01-08 |
| CVE-2022-22110 json | In Daybyday CRM, versions 1.1 through 2.2.0 enforce weak password requirements in the user update functionality. A user with ... | 7.5 - HIGH | 2022-01-05 | 2022-01-21 |
| CVE-2022-22109 json | In Daybyday CRM, version 2.2.0 is vulnerable to Stored Cross-Site Scripting (XSS) vulnerability that allows low privileged ap... | 5.4 - MEDIUM | 2022-01-05 | 2022-01-08 |
| CVE-2022-22108 json | In Daybyday CRM, versions 2.0.0 through 2.2.0 are vulnerable to Missing Authorization. An attacker that has the lowest privil... | 4.3 - MEDIUM | 2022-01-05 | 2022-01-08 |
| CVE-2022-22107 json | In Daybyday CRM, versions 2.0.0 through 2.2.0 are vulnerable to Missing Authorization. An attacker that has the lowest privil... | 4.3 - MEDIUM | 2022-01-05 | 2022-01-08 |