CVE-2017-15872

Publication date

2017-10-24 20:00:00

Family

mitre

State

PUBLISHED

Description

phpwcms 1.8.9 has XSS in include/inc_tmpl/admin.edituser.tmpl.php and include/inc_tmpl/admin.newuser.tmpl.php via the username (aka new_login) field.