CVE-2018-10367: XSS
Published Apr 25, 2018
·Updated
An issue was discovered in WUZHI CMS 4.1.0. The content-management feature has Stored XSS via the title or content section.
Affected Software
2 affected components
Wuzhicms Wuzhi Cms=4.1.0
Wuzhicms Wuzhicms=4.1.0
Event History
Apr 25, 2018
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
Description
Data Sourced
via NVD·09:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2018-10367.
2
What is the severity of CVE-2018-10367 vulnerability?
The severity of CVE-2018-10367 vulnerability is medium, with a severity value of 4.8.
3
How does the vulnerability manifest?
The vulnerability manifests in WUZHI CMS 4.1.0 through a stored XSS in the title or content section.
4
What is the affected software version?
The affected software version is WUZHI CMS 4.1.0.
5
Is there a fix available for CVE-2018-10367?
Yes, it is recommended to update to a fixed version of WUZHI CMS to mitigate the CVE-2018-10367 vulnerability.