RSS   Vulnerabilities for 'Wolfcms'   RSS

2019-04-25
 
CVE-2018-18824

CWE-79
 

 
WolfCMS v0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.

 
 
CVE-2018-18823

CWE-79
 

 
WolfCMS 0.8.3.1 allows XSS via an SVG file to /?/admin/plugin/file_manager/browse/.

 
2019-03-29
 
CVE-2019-10646

CWE-79
 

 
Wolf CMS v0.8.3.1 is affected by cross site scripting (XSS) in the module Add Snippet (/?/admin/snippet/add). This allows an attacker to insert arbitrary JavaScript as user input, which will be executed whenever the affected snippet is loaded.

 

 >>> Vendor: Wolfcms 2 Products
Wolf cms
Wolfcms


Copyright 2024, cxsecurity.com

 

Back to Top