PT-2022-7933 · Unknown · Elefant Cms
Tim Coen
·
Published
2022-06-20
·
Updated
2022-06-28
·
CVE-2017-20060
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Elefant CMS version 1.3.12-RC
Description
A problematic issue was found in the Blog Post Handler component, leading to basic cross site scripting (Persistent). The attack can be initiated remotely. Upgrading to version 1.3.13 addresses this issue.
Recommendations
For Elefant CMS version 1.3.12-RC, upgrade to version 1.3.13 to resolve the issue.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Elefant Cms