First published: Fri Dec 28 2018(Updated: )
Evolution CMS 1.4.x allows XSS via the page weblink title parameter to the manager/ URI.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Modx Evolution Cms | >=1.4.0<=1.4.7 | |
composer/evolutioncms/evolution | >=1.4<1.4.6 | 1.4.6 |
>=1.4.0<=1.4.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.