RSS   Vulnerabilities for 'No-cms'   RSS

2018-12-31
 
CVE-2018-19902

CWE-79
 

 
No-CMS 1.1.3 is prone to Persistent XSS via the blog/manage_article "keyword" parameter.

 
 
CVE-2018-19901

CWE-79
 

 
No-CMS 1.1.3 is prone to Persistent XSS via the blog/manage_article/index/ "article_title" parameter.

 
2018-10-31
 
CVE-2018-18868

CWE-79
 

 
No-CMS 1.1.3 is prone to Persistent XSS via a contact_us name parameter, as demonstrated by the VG48Z5PqVWname parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top