Clippercms · Clippercms · CVE-2018-13998
**Name of the Vulnerable Software and Affected Versions**
ClipperCMS version 1.3.3
**Description**
The issue concerns stored XSS that can be triggered via the Full Name field in two locations: (1) Security -> Manager Users or (2) Security -> Web Users.
**Recommendations**
For ClipperCMS version 1.3.3, update to a version that fixes the stored XSS issue in the Full Name field of the Security -> Manager Users and Security -> Web Users sections.