There are multiple Persistent XSS vulnerabilities in Radiant CMS 1.1.4. They affect Personal Preferences (Name and Username) and Configuration (Site Title, Dev Site Domain, Page Parts, and Page Fields).
References
Link | Resource |
---|---|
http://www.securityfocus.com/archive/1/541798/100/0/threaded | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/103080 | Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2018-02-21 16:29
Updated : 2024-02-04 19:46
NVD link : CVE-2018-7261
Mitre link : CVE-2018-7261
CVE.ORG link : CVE-2018-7261
JSON object : View
Products Affected
radiantcms
- radiant_cms
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')