ZeroHour

CVE-2018-18692

PoC
CVSS 3.0
6.1 medium
EPSS
1%p62
Published
()
Modified
Description

A reflected Cross-Site scripting (XSS) vulnerability in SEMCO Semcosoft 5.3 allows remote attackers to inject arbitrary web scripts or HTML via the username parameter to the Login Form.

Vendors
semcosoft
Products
semcosoft
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.