GeniXCMS 1.1.5 ha XSS tramite il dbuser o parametro dbhost durante la fase 1 di installazione. |
http://packetstormsecurity.com/files/151006/GeniXCMS-1.1.5-Cross-Site-Scripting.html https://github.com/semplon/GeniXCMS/issues/88 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14476 |
Vulnerabilità: CVE-2018-14476
