CVE-2017-18175

Publication date

2018-02-12 14:00:00

Family

mitre

State

PUBLISHED

Description

Progress Sitefinity 9.1 has XSS via the Content Management Template Configuration (aka Templateconfiguration), as demonstrated by the src attribute of an IMG element. This is fixed in 10.1.