CVE-2014-8772
03.12.2014, 18:59
Cross-site scripting (XSS) vulnerability in the search_controller in X3 CMS 0.5.1 and 0.5.1.1 allows remote authenticated users to inject arbitrary web script or HTML via the search parameter.
| Vendor | Product | Version |
|---|---|---|
| x3cms | x3_cms | 0.5.1 |
| x3cms | x3_cms | 0.5.1.1 |
𝑥
= Vulnerable software versions