MEDIUM
Multiple XSS vulnerabilities in WeaselCMS v0.3.6 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php because $_SERVER['PHP_SELF'] is mishandled
Published Sep 23, 2018
6.1
MEDIUMCVSS 3.0
EPSS 0.83%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.