CVE-2017-1000193
17.11.2017, 02:29
October CMS build 412 is vulnerable to stored WCI (a.k.a XSS) in brand logo image name resulting in JavaScript code execution in the victim's browser.
| Vendor | Product | Version |
|---|---|---|
| octobercms | october | 𝑥 ≤ 1.0.412 |
𝑥
= Vulnerable software versions