CVE-2018-7547

Publication date

2018-02-27 21:00:00

Family

mitre

State

PUBLISHED

Description

lyadmin 1.x has XSS via the config[WEB_SITE_TITLE] parameter to the /admin.php?s=/admin/config/groupsave.html URI.