CVE-2017-9332
EUVD-2017-1826706.06.2017, 14:29
The smarty_self function in modules/module_smarty.php in PivotX 2.3.11 mishandles the URI, allowing XSS via vectors involving quotes in the self Smarty tag.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pivotx | pivotx | 2.3.11 |
𝑥
= Vulnerable software versions