Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sdrac0Nidso

#50117of 53,633
4.8Total CVSS
Vulnerabilities · 1
PT-2018-13506
4.8
2018-09-02
Chemcms · Chemcms · CVE-2018-16346
**Name of the Vulnerable Software and Affected Versions** ChemCMS version 1.0.6 **Description** The issue is related to a Cross-Site Scripting (XSS) problem. It occurs via the "setting -> website information" field, which allows for the injection of malicious scripts. **Recommendations** For ChemCMS version 1.0.6, ensure proper input validation and sanitization for the "setting -> website information" field to prevent XSS attacks. As a temporary workaround, consider restricting access to this field until a patch is available.