DomainMod 4.10.0 has Stored XSS in the "/settings/profile/index.php" new_last_name parameter.
References
Link | Resource |
---|---|
https://github.com/domainmod/domainmod/issues/66 | Exploit Third Party Advisory |
Configurations
Information
Published : 2018-05-29 21:29
Updated : 2018-11-29 04:19
NVD link : CVE-2018-11559
Mitre link : CVE-2018-11559
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
domainmod
- domainmod