CVE-2018-19464

Publication date

2018-11-22 21:00:00

Family

mitre

State

PUBLISHED

Description

Discuz! X3.4 allows XSS via admin.php because admincp/admincp_setting.php and templatedefaultcommonfooter.htm mishandles statcode field from third-party stats code.