First published: Sat Sep 08 2018(Updated: )
\upload\plugins\sys\Install.php in CScms 4.1 has XSS via the site name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chshcms Cscms | =4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
\upload\plugins\sys\Install.php in CScms 4.1 has XSS vulnerability via the site name.
The severity of CVE-2018-16730 is medium.
We do not provide information on how to exploit vulnerabilities. Please refer to the provided references for more information.
Update CScms to version 4.1 or later to fix the XSS vulnerability.