First published: Tue Jan 14 2020(Updated: )
A Cross-Site Scripting (XSS) vulnerability exists in the rcID parameter in Concrete CMS 5.4.1.1 and earlier.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Concretecms Concrete Cms | <=5.4.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-3183 is a Cross-Site Scripting (XSS) vulnerability in Concrete CMS 5.4.1.1 and earlier.
The severity of CVE-2011-3183 is medium with a severity value of 6.1.
The CVE-2011-3183 vulnerability affects Concrete CMS versions 5.4.1.1 and earlier.
Cross-Site Scripting (XSS) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
Yes, updating to a version newer than Concrete CMS 5.4.1.1 will fix the CVE-2011-3183 vulnerability.