CVE-2017-14193CVE-2017-14193

Affected configuration(s):

cpe:/a:finecms_project:finecms:5.0.11

Date published: 2017-09-07T13:29:00.220-04:00

Date last modified: 2017-09-12T09:55:26.837-04:00

CVSS Score: 4.3

Principal attack vector: NETWORK

Complexity:  MEDIUM

Reference URL: http://bendawang.site/article/finecms-V5.0.11-multi-vulnerablity

Summary: The oauth function in controllers/member/api.php in dayrui FineCms 5.0.11 has XSS related to the Referer HTTP header with Internet Explorer.

CategoriesUncategorised

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.