Fork CMS 5.0.6 permette memorizzato XSS tramite l’/ it / impostazioni facebook_admin_ids parametro (aka ingresso ""ids Admin"" nella sezione Facebook) privato. |
https://www.netsparker.com/web-applications-advisories/ns-18-032-stored-cross-site-scripting-in-forkcms/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20682 |
Vulnerabilità: CVE-2018-20682
