CVE-2019-9107: XSS
Published Feb 25, 2019
·Updated
XSS exists in WUZHI CMS 4.1.0 via index.php?m=attachment&f=imagecut&v=init&imgurl=[XSS] to coreframe/app/attachment/imagecut.php.
Affected Software
2 affected components
Wuzhicms Wuzhi Cms=4.1.0
Wuzhicms Wuzhicms=4.1.0
Event History
Feb 25, 2019
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·01:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this XSS vulnerability?
The vulnerability ID for this XSS vulnerability is CVE-2019-9107.
2
What is the severity of CVE-2019-9107?
The severity of CVE-2019-9107 is medium.
3
How does the XSS vulnerability occur in WUZHI CMS 4.1.0?
The XSS vulnerability occurs in WUZHI CMS 4.1.0 when using index.php?m=attachment&f=imagecut&v=init&imgurl=[XSS] to coreframe/app/attachment/imagecut.php.
4
How can I fix the XSS vulnerability in WUZHI CMS 4.1.0?
To fix the XSS vulnerability in WUZHI CMS 4.1.0, update to a version that addresses the vulnerability and apply any recommended patches.
5
Are there any references for more information about CVE-2019-9107?
Yes, you can find more information about CVE-2019-9107 at the following references: [link1], [link2].