CVE-2018-16786

Publication date

2018-09-21 15:00:00

Family

mitre

State

PUBLISHED

Description

DedeCMS 5.7 SP2 allows XSS via an onhashchange attribute in the msg parameter to /plus/feedback_ajax.php.