CVE-2017-14231
10.09.2017, 07:29
GeniXCMS before 1.1.0 allows remote attackers to cause a denial of service (account blockage) by leveraging the mishandling of certain username substring relationships, such as the admin<script> username versus the admin username, related to register.php, User.class.php, and Type.class.php.Enginsight
Vendor | Product | Version |
---|---|---|
genixcms | genixcms | 𝑥 ≤ 1.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration