First published: Sun Oct 28 2018(Updated: )
An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Menu.php?lgid=1 during editing.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sem-cms | =3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-18745 is an XSS (Cross-Site Scripting) vulnerability in SEMCMS version 3.4.
The XSS vulnerability in SEMCMS 3.4 occurs during editing via the 'admin/SEMCMS_Menu.php?lgid=1' page.
The severity of CVE-2018-18745 is medium with a severity value of 4.8.
To fix the XSS issue in SEMCMS 3.4, it is recommended to upgrade to a patched version provided by the vendor.
For more information about CVE-2018-18745, you can refer to the following link: [https://github.com/AvaterXXX/SEMCMS/blob/master/XSS.md#xss5]