CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS
Percentile
70.5%
Compiere provided by Almas Inc. is an Enterprise Resource Planning (ERP) and Customer Relationship Management (CRM) software. Compiere contains a cross-site scripting vulnerability.
This vulnerability is different from JVN#38687002.
When a user is logged into Compiere, an arbitrary script may be executed on the user’s web browser.
Update the Software
Update to the latest version according to the information provided by the developer.