First published: Thu May 31 2018(Updated: )
SeaCMS 6.61 has stored XSS in admin_collect.php via the siteurl parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Seacms Seacms | =6.61 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-11583 is medium.
The affected software version of CVE-2018-11583 is SeaCMS 6.61.
CVE-2018-11583 is a stored XSS vulnerability that occurs in the admin_collect.php file of SeaCMS 6.61 via the siteurl parameter.
At the moment, there is no known fix for CVE-2018-11583. It is recommended to update to a patched version of the software when available.
The Common Weakness Enumeration (CWE) ID for CVE-2018-11583 is CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))