CVE-2018-8805

Publication date

2018-03-20 05:00:00

Family

mitre

State

PUBLISHED

Description

Yxcms building system (compatible cell phone) v1.4.7 has XSS via the content parameter to protectedappsdefaultviewdefaultextend_guestbook.php or protectedappsdefaultviewmobileextend_guestbook.php in an index.php?r=default/column/index&col=guestbook request.