PT-2017-18300 · Genix · Genixcms

Published

2017-05-01

·

Updated

2022-05-17

·

CVE-2017-8376

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions GeniXCMS version 1.0.2
Description The issue is triggered by an authenticated comment that is mishandled during a mouse operation by an administrator, leading to XSS.
Recommendations For GeniXCMS version 1.0.2, update to a newer version that contains a fix for this issue, as no specific workaround is provided for this version.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-8376
GHSA-52XR-WX26-9RFG

Affected Products

Genixcms