CVE-2017-11629
EUVD-2017-324126.07.2017, 08:29
dayrui FineCms through 5.0.10 has Cross Site Scripting (XSS) in controllers/api.php via the function parameter in a c=api&m=data2 request.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| finecms | finecms | 𝑥 ≤ 5.0.10 |
𝑥
= Vulnerable software versions