CVE-2018-18417 | Ekushey Project Manager CRM 3.1 create Name Stored cross site scripting (ID 149842 / EDB-45681)
A vulnerability was found in Ekushey Project Manager CRM 3.1. It has been classified as problematic. This affects an unknown part of the file index.php/admin/client/create. The manipulation of the argument Name as part of Parameter leads to cross site scripting (Stored).
This vulnerability is uniquely identified as CVE-2018-18417. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.