CVE-2021-28088
EUVD-2021-062311.03.2021, 17:15
Cross-site scripting (XSS) in modules/content/admin/content.php in ImpressCMS profile 1.4.2 allows remote attackers to inject arbitrary web script or HTML parameters through the "Display Name" field.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| impresscms | impresscms | 1.4.2 |
𝑥
= Vulnerable software versions