CVE-2018-10032: XSS
Published Apr 11, 2018
·Updated
CMS Made Simple (aka CMSMS) 2.2.7 has Reflected XSS in admin/moduleinterface.php via the m1version parameter.
Affected Software
1 affected component
CMSmadesimple CMS Made Simple<=2.2.7
Event History
Apr 11, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-10032?
CVE-2018-10032 has a medium severity rating due to its potential for reflected XSS attacks.
2
How do I fix CVE-2018-10032?
To fix CVE-2018-10032, upgrade CMS Made Simple to version 2.2.8 or later.
3
What type of vulnerability is CVE-2018-10032?
CVE-2018-10032 is classified as a reflected cross-site scripting (XSS) vulnerability.
4
Where is the vulnerability located in CMS Made Simple for CVE-2018-10032?
The vulnerability is located in the admin/moduleinterface.php file via the m1_version parameter.
5
Who is affected by CVE-2018-10032?
Users of CMS Made Simple version 2.2.7 and below are affected by CVE-2018-10032.