Sistema / edit_book.php in XYCMS 1.7 ha memorizzato XSS tramite una richiesta add_do.php predisposta correlato a add_book.php. |
https://github.com/TonyKentClark/MyCodeAudit/blob/master/xycms%20%20v1.7 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14686 |
Vulnerabilità: CVE-2018-14686
