CVE-2018-14777
01.08.2018, 19:29
An issue was discovered in DataLife Engine (DLE) through 13.0. An attacker can use XSS (related to the /addnews.html and /index.php?do=addnews URIs) to send a malicious script to unsuspecting Admins or users.
Vendor | Product | Version |
---|---|---|
dleviet | datalife_engine | 𝑥 ≤ 13.0 |
𝑥
= Vulnerable software versions