CVE-2018-11583: XSS
Published May 31, 2018
·Updated
SeaCMS 6.61 has stored XSS in admincollect.php via the siteurl parameter.
Affected Software
1 affected component
SEACMS SEACMS=6.61
Event History
May 31, 2018
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-11583?
The severity of CVE-2018-11583 is medium.
2
What is the affected software version of CVE-2018-11583?
The affected software version of CVE-2018-11583 is SeaCMS 6.61.
3
How does CVE-2018-11583 work?
CVE-2018-11583 is a stored XSS vulnerability that occurs in the admin_collect.php file of SeaCMS 6.61 via the siteurl parameter.
4
Is there a fix for CVE-2018-11583?
At the moment, there is no known fix for CVE-2018-11583. It is recommended to update to a patched version of the software when available.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2018-11583?
The Common Weakness Enumeration (CWE) ID for CVE-2018-11583 is CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))