CVE-2021-39499

Publication date

2021-09-07 19:59:42

Family

mitre

State

PUBLISHED

Description

A Cross-site scripting (XSS) vulnerability in Users in Qiong ICP EyouCMS 1.5.4 allows remote attackers to inject arbitrary web script or HTML via the `title` parameter in bind_email function.