CVE-2018-1000826: XSS
Published Dec 20, 2018
·Updated
Microweber version <= 1.0.7 contains a Cross Site Scripting (XSS) vulnerability in Admin login form template that can result in Execution of JavaScript code.
Affected Software
2 affected componentsFixes available
composer/microweber/microweber<1.1
1.1
Microweber Microweber<=1.0.7
Event History
Dec 20, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
May 14, 2022
Advisory Published
01:40 AM
Frequently Asked Questions
1
What is the severity of CVE-2018-1000826?
CVE-2018-1000826 is classified as a high severity Cross Site Scripting (XSS) vulnerability.
2
How do I fix CVE-2018-1000826?
To fix CVE-2018-1000826, update Microweber to version 1.1 or later.
3
What is the impact of CVE-2018-1000826?
CVE-2018-1000826 allows attackers to execute JavaScript code in the context of the Admin login form.
4
Which versions are affected by CVE-2018-1000826?
CVE-2018-1000826 affects Microweber versions 1.0.7 and earlier.
5
Is CVE-2018-1000826 a common vulnerability?
CVE-2018-1000826 is a known vulnerability commonly discussed in relation to XSS issues in web applications.