ZeroHour

CVE-2018-18553

PoC
CVSS 3.0
6.1 medium
EPSS
<1%p56
Published
()
Modified
Description

Leanote 2.6.1 has XSS via the Blog Basic Setting title field, which is mishandled during rendering of the "likes" page.

Vendors
leanote
Products
leanote
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.