Skip to main content

Vendor/product archive

inoideas / inoerp CVEs

Beta · best-effort

3 CVEs tagged to inoideas / inoerp2 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2019-25312

Published Feb 11, 2026

InoERP 0.7.2 contains a persistent cross-site scripting vulnerability in the comment section that allows unauthenticated attackers to inject malicious scripts. Attackers can submi…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-28870

Published Feb 10, 2021

In InoERP 0.7.2, an unauthorized attacker can execute arbitrary code on the server side due to lack of validations in /modules/sys/form_personalization/json_fp.php.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1