CVE-2018-7547
27.02.2018, 21:29
lyadmin 1.x has XSS via the config[WEB_SITE_TITLE] parameter to the /admin.php?s=/admin/config/groupsave.html URI.
Vendor | Product | Version |
---|---|---|
lingyun | lyadmin | 1.0.0 ≤ 𝑥 ≤ 1.2.0 |
𝑥
= Vulnerable software versions
lyadmin 1.x has XSS via the config[WEB_SITE_TITLE] parameter to the /admin.php?s=/admin/config/groupsave.html URI.
Vendor | Product | Version |
---|---|---|
lingyun | lyadmin | 1.0.0 ≤ 𝑥 ≤ 1.2.0 |