ZeroHour

CVE-2018-14835

PoC
CVSS 3.0
5.4 medium
EPSS
<1%p52
Published
()
Modified
Description

Subrion CMS v4.2.1 is vulnerable to Stored XSS because of no escaping added to the tooltip information being displayed in multiple areas.

Vendors
subrion
Products
subrion cms
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.