PT-2018-14621 · Semcms · Semcms
Published
2018-10-28
·
Updated
2018-12-04
·
CVE-2018-18743
CVSS v3.1
4.8
Medium
| Vector | AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
SEMCMS version 3.4
Description
A cross-site scripting (XSS) issue was found in the admin/SEMCMS Categories.php URI, specifically via the second text field.
Recommendations
For SEMCMS version 3.4, update to a version that fixes this issue, as no specific workaround is provided for this version.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Semcms