Описание
Redaxo Core CMS Cross Site Scripting (XSS)
The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allows a remote attacker to escalate privileges.
Пакеты
Наименование
redaxo/source
composer
Затронутые версииВерсия исправления
< 5.18.0
5.18.0
Связанные уязвимости
CVSS3: 5.4
nvd
около 1 года назад
The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allows a remote attacker to escalate privileges