CVE-2019-9109: XSS
Published Feb 25, 2019
·Updated
XSS exists in WUZHI CMS 4.1.0 via index.php?m=message&f=message&v=add&username=[XSS] to coreframe/app/message/message.php.
Affected Software
2 affected components
Wuzhicms Wuzhi Cms=4.1.0
Wuzhicms Wuzhicms=4.1.0
Event History
Feb 25, 2019
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·01:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this XSS vulnerability?
The vulnerability ID of this XSS vulnerability is CVE-2019-9109.
2
What is the severity level of CVE-2019-9109?
CVE-2019-9109 has a severity level of medium with a CVSS score of 6.1.
3
How does the XSS vulnerability occur in WUZHI CMS 4.1.0?
The XSS vulnerability occurs in WUZHI CMS 4.1.0 through the index.php?m=message&f=message&v=add&username=[XSS] parameter in coreframe/app/message/message.php.
4
Which version of WUZHI CMS is affected by this vulnerability?
The version of WUZHI CMS that is affected by this vulnerability is 4.1.0.
5
Is there a patch or fix available for CVE-2019-9109?
Yes, there is a patch or fix available for CVE-2019-9109. Please refer to the provided references for more information.