CVE-2017-5876
XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /news-events/events date parameter.
Cross-site Scripting
Vendor | Product | Version |
---|---|---|
dotcms | dotcms | 3.7.0 |
Common Weakness Enumeration
XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /news-events/events date parameter.
Vendor | Product | Version |
---|---|---|
dotcms | dotcms | 3.7.0 |