Security Advisory

CVE-2018-1000087

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-03-13 15:00:00
Last updated 2024-08-05 12:33:49
Assigner mitre
State PUBLISHED

Description

WolfCMS version version 0.8.3.1 contains a Reflected Cross Site Scripting vulnerability in "Create New File" and "Create New Directory" input box from files Tab that can result in Session Hijacking, Spread Worms,Control the browser remotely. . This attack appear to be exploitable via Attacker can execute the JavaScript into the "Create New File" and "Create New Directory" input box from files.