CVE-2018-18745: XSS
Published Oct 28, 2018
·Updated
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMSMenu.php?lgid=1 during editing.
Affected Software
1 affected component
Sem-cms Semcms=3.4
Event History
Oct 28, 2018
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is CVE-2018-18745?
CVE-2018-18745 is an XSS (Cross-Site Scripting) vulnerability in SEMCMS version 3.4.
2
How does the XSS vulnerability occur in SEMCMS 3.4?
The XSS vulnerability in SEMCMS 3.4 occurs during editing via the 'admin/SEMCMS_Menu.php?lgid=1' page.
3
What is the severity of CVE-2018-18745?
The severity of CVE-2018-18745 is medium with a severity value of 4.8.
4
How can I fix the XSS issue in SEMCMS 3.4?
To fix the XSS issue in SEMCMS 3.4, it is recommended to upgrade to a patched version provided by the vendor.
5
Where can I find more information about CVE-2018-18745?
For more information about CVE-2018-18745, you can refer to the following link: [https://github.com/AvaterXXX/SEMCMS/blob/master/XSS.md#xss5]