WBCE CMS 1.5.2 is vulnerable to Cross Site Scripting (XSS) via \admin\pages\sections_save.php namesection2 parameters.
References
Link Resource
https://github.com/APTX-4879/CVE Exploit Third Party Advisory
https://github.com/APTX-4879/CVE/blob/main/CVE-2022-30072.pdf Exploit Third Party Advisory
https://github.com/WBCE/WBCE_CMS Product
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-05-17T16:05:41

Updated: 2022-05-17T16:05:41

Reserved: 2022-05-02T00:00:00


Link: CVE-2022-30072

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-05-17T17:15:08.447

Modified: 2022-05-25T21:43:01.860


Link: CVE-2022-30072

JSON object: View

cve-icon Redhat Information

No data.

CWE