CVE-2020-18693

Cross Site Scripting (XSS) in MineWebCMS v1.7.0 allows remote attackers to execute arbitrary code by injecting malicious code into the 'Title' field of the component '/admin/news'.
References
Link Resource
https://github.com/MineWeb/MineWebCMS/issues/123 Exploit Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:mineweb_project:minewebcms:1.7.0:*:*:*:*:*:*:*

Information

Published : 2021-08-06 07:15

Updated : 2021-08-13 07:05


NVD link : CVE-2020-18693

Mitre link : CVE-2020-18693

Products Affected
No products.
CWE