CVE-2018-17049
EUVD-2018-883214.09.2018, 07:29
CQU-LANKERS through 2017-11-02 has XSS via the public/api.php callback parameter in an uploadpic action.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cqu_lankers_project | cqu_lankers | 𝑥 ≤ 2017-11-02 |
𝑥
= Vulnerable software versions