Логотип exploitDog
bind:CVE-2018-7035
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-7035

Количество 2

Количество 2

nvd логотип

CVE-2018-7035

почти 8 лет назад

Cross-site scripting (XSS) vulnerability in Gleez CMS 1.2.0 and 2.0 might allow remote attackers (users) to inject JavaScript via HTML content in an editor, which will result in Stored XSS when an Administrator tries to edit the same content, as demonstrated by use of the source editor for HTML mode in an Add Blog action.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-m2r2-qc49-gqw4

больше 3 лет назад

Gleez CMS Stored XSS

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-7035

Cross-site scripting (XSS) vulnerability in Gleez CMS 1.2.0 and 2.0 might allow remote attackers (users) to inject JavaScript via HTML content in an editor, which will result in Stored XSS when an Administrator tries to edit the same content, as demonstrated by use of the source editor for HTML mode in an Add Blog action.

CVSS3: 5.4
0%
Низкий
почти 8 лет назад
github логотип
GHSA-m2r2-qc49-gqw4

Gleez CMS Stored XSS

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу