Cross Site Scripting (XSS) vulnerability in UltimateKode Neo Billing – Accounting, Invoicing And CRM Software up to version 3.5 which allows remote attackers to inject arbitrary web script or HTML.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-23518
Reference (s):
- https://www.exploit-db.com/exploits/47289