First published: Mon Oct 29 2018(Updated: )
XSS was discovered in SEMCMS V3.4 via the semcms_remail.php?type=ok umail parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sem-cms | =3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-18783 is medium (6.1).
The XSS vulnerability was discovered in SEMCMS V3.4 via the semcms_remail.php?type=ok umail parameter.
The affected software version is SEMCMS V3.4.
The CWE ID associated with this vulnerability is CWE-79.
You can find more information about CVE-2018-18783 at the following references: [Reference 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/152197) and [Reference 2](https://github.com/m3lon/2018_Recorder/blob/master/SEMCMS%20DOM%20Based%20XSS.md).