Osclass 3.7.4 ha XSS tramite la stringa di query index.php, una vulnerabilità diverso CVE-2.014-6.280. |
http://packetstormsecurity.com/files/150643/OSclass-3.7.4-Cross-Site-Scripting.html https://www.netsparker.com/web-applications-advisories/ns-18-029-cross-site-scripting-in-osclass/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14481 |
Vulnerabilità: CVE-2018-14481
