ZeroHour

CVE-2017-5515

PoC
CVSS 3.0
5.4 medium
EPSS
<1%p54
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in the user prompt function in GeniXCMS through 0.0.8 allows remote authenticated users to inject arbitrary web script or HTML via tag names.

Vendors
metalgenix
Products
genixcms
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.