WBCE CMS 1.5.2 is vulnerable to Cross Site Scripting (XSS) via \admin\pages\sections_save.php namesection2 parameters.
References
Link | Resource |
---|---|
https://github.com/APTX-4879/CVE | Exploit Third Party Advisory |
https://github.com/APTX-4879/CVE/blob/main/CVE-2022-30072.pdf | Exploit Third Party Advisory |
https://github.com/WBCE/WBCE_CMS | Product |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-05-17T16:05:41
Updated: 2022-05-17T16:05:41
Reserved: 2022-05-02T00:00:00
Link: CVE-2022-30072
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-05-17T17:15:08.447
Modified: 2022-05-25T21:43:01.860
Link: CVE-2022-30072
JSON object: View
Redhat Information
No data.
CWE