ZeroHour

CVE-2018-10727

PoC
CVSS 3.1
6.1 medium
EPSS
1%p62
Published
()
Modified
Description

Reflected Cross-Site Scripting (XSS) vulnerability in the fabrik_referrer hidden field in the Fabrikar Fabrik component through v3.8.1 for Joomla! allows remote attackers to inject arbitrary web script via the HTTP Referer header.

Vendors
fabrikar
Products
fabrik
Ecosystems
Joomla
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.