Security Advisory

CVE-2018-19414

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-01-03 19:00:00
Last updated 2024-08-05 11:37:11
Assigner mitre
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in Plikli CMS 4.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) keyword parameter to groups.php; (2) username parameter to login.php; or (3) date parameter to search.php.