CVE-2018-7653: XSS
Published Mar 4, 2018
·Updated
In YzmCMS 3.6, index.php has XSS via the a, c, or m parameter.
Affected Software
1 affected component
YzmCMS YzmCMS=3.6
Event History
Mar 4, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-7653?
CVE-2018-7653 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2018-7653?
To fix CVE-2018-7653, sanitize and validate user input to prevent unauthorized scripts from executing.
3
Which software versions are affected by CVE-2018-7653?
CVE-2018-7653 affects YzmCMS version 3.6.
4
What type of vulnerability is CVE-2018-7653?
CVE-2018-7653 is a cross-site scripting (XSS) vulnerability.
5
What parameters are vulnerable in CVE-2018-7653?
In CVE-2018-7653, the vulnerable parameters include a, c, and m.