CVE-2017-6479

FenixHosting/fenix-open-source before 2017-03-04 is vulnerable to a reflected XSS in forums/search.php (search-by-topic parameter).
Configurations

Configuration 1 (hide)

cpe:2.3:a:fenix_hosting:fenix-open-source:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:29

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/96587 - () http://www.securityfocus.com/bid/96587 -
References () https://github.com/FenixHosting/fenix-open-source/issues/2 - Exploit, Vendor Advisory () https://github.com/FenixHosting/fenix-open-source/issues/2 - Exploit, Vendor Advisory

Information

Published : 2017-03-05 20:59

Updated : 2024-11-21 03:29


NVD link : CVE-2017-6479

Mitre link : CVE-2017-6479

CVE.ORG link : CVE-2017-6479


JSON object : View

Products Affected

fenix_hosting

  • fenix-open-source
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')