CVE-2015-2678
23.03.2015, 16:59
Multiple cross-site scripting (XSS) vulnerabilities in MetalGenix GeniXCMS before 0.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter in the categories page to gxadmin/index.php or (2) page parameter to index.php.
Vendor | Product | Version |
---|---|---|
genixcms | genixcms | 𝑥 ≤ 0.0.1 |
𝑥
= Vulnerable software versions
References