Monstra CMS 1.6 allows XSS via an uploaded SVG document to the admin/index.php?id=filesmanager&path=uploads/ URI. NOTE: this is a discontinued product.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-02T19:45:40

Updated: 2020-06-24T13:18:35

Reserved: 2018-11-27T00:00:00


Link: CVE-2018-19599

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2020-03-02T20:15:11.320

Modified: 2020-06-24T14:15:11.757


Link: CVE-2018-19599

JSON object: View

cve-icon Redhat Information

No data.

CWE