CVE-2014-8772
03.12.2014, 18:59
Cross-site scripting (XSS) vulnerability in the search_controller in X3 CMS 0.5.1 and 0.5.1.1 allows remote authenticated users to inject arbitrary web script or HTML via the search parameter.
Vendor | Product | Version |
---|---|---|
x3cms | x3_cms | 0.5.1 |
x3cms | x3_cms | 0.5.1.1 |
𝑥
= Vulnerable software versions