First published: Sat Sep 14 2019(Updated: )
s-cms V3.0 has XSS in index.php?type=text via the S_id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
S-cms S-cms | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for s-cms V3.0 is CVE-2019-16312.
The severity of CVE-2019-16312 is medium with a CVSS score of 6.1.
XSS occurs in s-cms V3.0 through the index.php?type=text endpoint using the S_id parameter.
The software version affected by CVE-2019-16312 is s-cms V3.0.
To fix CVE-2019-16312, it is recommended to update to a patched version of s-cms V3.0.