Описание
Piranha CMS Cross-site Scripting vulnerability
A stored cross-site scripting (XSS) vulnerability in Piranha CMS 11.1 allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by creating a page via the /manager/pages and then adding a markdown content with the XSS payload.
Пакеты
Наименование
Piranha
nuget
Затронутые версииВерсия исправления
<= 11.1.0
Отсутствует
Связанные уязвимости
CVSS3: 4.7
nvd
около 1 года назад
A stored cross-site scripting (XSS) vulnerability in Piranha CMS 11.1 allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by creating a page via the /manager/pages and then adding a markdown content with the XSS payload.