First published: Wed Dec 26 2018(Updated: )
An issue was discovered in S-CMS 3.0. It allows XSS via the admin/demo.php T_id parameter.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
S-cms S-cms | =3.0 | |
=3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20476 is a vulnerability in S-CMS 3.0 that allows XSS via the admin/demo.php T_id parameter.
CVE-2018-20476 has a severity rating of medium with a score of 6.1.
The affected version of S-CMS is 3.0.
To fix CVE-2018-20476, it is recommended to update S-CMS to the latest version available.
More information about CVE-2018-20476 can be found at the following link: https://shell01.top/2018/12/14/scms-xss/#more