Security Advisory

CVE-2018-11680

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-06-02 12:00:00
Last updated 2024-09-17 04:24:29
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in CmsEasy 6.1_20180508. There is a CSRF vulnerability in the rich text editor that can add an IFRAME element. This might be used in a DoS attack if a referenced remote URL is refreshed at a rapid rate.