Metrics
Affected Vendors & Products
Thu, 21 Aug 2025 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Solidinvoice
Solidinvoice solidinvoice |
|
CPEs | cpe:2.3:a:solidinvoice:solidinvoice:*:*:*:*:*:*:*:* | |
Vendors & Products |
Solidinvoice
Solidinvoice solidinvoice |
Wed, 20 Aug 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 19 Aug 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was determined in SolidInvoice up to 2.4.0. Impacted is an unknown function of the file /quotes of the component Quote Module. This manipulation of the argument Name causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | SolidInvoice Quote quotes cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-19T21:32:06.661Z
Updated: 2025-08-20T15:16:35.580Z
Reserved: 2025-08-19T13:37:02.638Z
Link: CVE-2025-9169

Updated: 2025-08-20T14:00:13.417Z

Status : Analyzed
Published: 2025-08-19T22:15:28.110
Modified: 2025-08-21T18:28:21.787
Link: CVE-2025-9169

No data.