MEDIUM
FineCMS through 2017-07-12 allows XSS in visitors.php because JavaScript in visited URLs is not restricted either during logging or during the reading of logs, a different vulnerability than CVE-2017-11180
Published Jul 13, 2017
6.1
MEDIUMCVSS 3.0
EPSS 0.67%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.