CVE-2018-17003
21.09.2018, 17:29
In LimeSurvey 3.14.7, HTML Injection and Stored XSS have been discovered in the appendix via the surveyls_title parameter to /index.php?r=admin/survey/sa/insert.
Vendor | Product | Version |
---|---|---|
limesurvey | limesurvey | 3.14.7 |
𝑥
= Vulnerable software versions