CXUUCMS V3 3.1 is affected by a reflected XSS vulnerability that allows remote attackers to inject arbitrary web script or HTML via the imgurl parameter of admin.php?c=content&a=add.
References
Link Resource
https://github.com/cbkhwx/cxuucmsv3/issues/4 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-12-26T03:04:32

Updated: 2020-12-26T03:04:32

Reserved: 2020-12-14T00:00:00


Link: CVE-2020-35346

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-12-26T04:15:12.460

Modified: 2020-12-28T20:21:28.670


Link: CVE-2020-35346

JSON object: View

cve-icon Redhat Information

No data.

CWE