← Back

Telaxius

telaxius

7 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Epesi
epesi

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Telaxius
1Epesi
May 13, 2026
Sep 22, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Description parameter.
1Telaxius
1Epesi
May 13, 2026
Sep 22, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Title parameter.
1Telaxius
1Epesi
May 13, 2026
Sep 22, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Alerts Title parameter.
1Telaxius
1Epesi
May 13, 2026
Sep 22, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Phonecalls Subject parameter.
1Telaxius
1Epesi
May 13, 2026
Sep 22, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Phonecalls Description parameter.
1Telaxius
1Epesi
May 13, 2026
Sep 22, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Phonecall Notes Title parameter.
1Telaxius
1Epesi
May 13, 2026
May 4, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in modules/Base/Box/check_for_new_version.php in EPESI in Telaxus/EPESI 1.8.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URI that lac...Show more
Cross-site scripting (XSS) vulnerability in modules/Base/Box/check_for_new_version.php in EPESI in Telaxus/EPESI 1.8.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URI that lacks the cid parameter.Show less