CVE-2018-16349: XSS
Published Sep 2, 2018
·Updated
WUZHI CMS 4.1.0 has XSS via the index.php?m=link&f=index&v=add form[remark] parameter.
Affected Software
1 affected component
Wuzhi Cms Project Wuzhi Cms=4.1.0
Event History
Sep 2, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-16349?
CVE-2018-16349 has a medium severity level due to the potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2018-16349?
To fix CVE-2018-16349, it is recommended to upgrade WUZHI CMS to the latest version that addresses this vulnerability.
3
What is the impact of CVE-2018-16349?
The impact of CVE-2018-16349 allows attackers to execute arbitrary JavaScript code in the context of a user's browser.
4
Which versions of WUZHI CMS are affected by CVE-2018-16349?
CVE-2018-16349 specifically affects WUZHI CMS version 4.1.0.
5
How can I detect CVE-2018-16349 in my WUZHI CMS instance?
You can detect CVE-2018-16349 by testing the index.php?m=link&f=index&v=add form[remark] parameter for XSS vulnerabilities.