Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Manasmbellani

#26652of 53,633
9.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2018-15453
4.8
2018-12-30
Ivan Cordoba · Ivan Cordoba Generic Content Management System · CVE-2018-20589
**Name of the Vulnerable Software and Affected Versions** Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 **Description** The issue concerns a Cross-Site Scripting (XSS) flaw. It is exploitable via the Administrator/add pictures.php `article ID`. **Recommendations** For Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28, update to a version released after 2018-04-28 to resolve the issue.
PT-2018-15454
4.8
2018-12-30
Ivan Cordoba · Ivan Cordoba Generic Content Management System · CVE-2018-20590
**Name of the Vulnerable Software and Affected Versions** Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 **Description** The issue allows for XSS via the Administrator/users.php `user ID`. **Recommendations** For Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28, avoid using the `user ID` in the Administrator/users.php endpoint until the issue is resolved.