CVE-2017-14195CVE-2017-14195

Affected configuration(s):

cpe:/a:finecms_project:finecms:5.0.11

Date published: 2017-09-07T13:29:00.300-04:00

Date last modified: 2017-09-12T09:54:12.337-04:00

CVSS Score: 4.3

Principal attack vector: NETWORK

Complexity:  MEDIUM

Reference URL: http://bendawang.site/article/finecms-V5.0.11-multi-vulnerablity

Summary: The call_msg function in controllers/Form.php in dayrui FineCms 5.0.11 might have XSS related to the Referer HTTP header with Internet Explorer.

CategoriesUncategorised

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.