CVE-2017-15640: XSS
Published Apr 21, 2018
·Updated
app/sections/user-menu.php in phpIPAM before 1.3.1 has XSS via the ip parameter.
Affected Software
1 affected component
Phpipam Phpipam<1.3.1
Event History
Apr 21, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2017-15640.
2
What is the severity of vulnerability CVE-2017-15640?
The severity of vulnerability CVE-2017-15640 is medium (5.4).
3
Which software versions are affected by vulnerability CVE-2017-15640?
The vulnerable software version is phpIPAM before 1.3.1.
4
How does the vulnerability CVE-2017-15640 occur?
The vulnerability CVE-2017-15640 occurs due to an XSS (Cross-Site Scripting) vulnerability in app/sections/user-menu.php in phpIPAM.
5
How can I fix vulnerability CVE-2017-15640?
The vulnerability CVE-2017-15640 can be fixed by upgrading to phpIPAM version 1.3.1 or later.