Andrzej

2 exploits Active since Mar 2017
CVE-2017-6511 WRITEUP MEDIUM WRITEUP
Finecms < 2017-02-10 - XSS
andrzuk/FineCMS before 2017-03-06 is vulnerable to a reflected XSS in index.php because of missing validation of the action parameter in application/classes/application.php.
CVSS 6.1
CVE-2022-4892 WRITEUP LOW WRITEUP
MyCMS - XSS
A vulnerability was found in MyCMS. It has been classified as problematic. This affects the function build_view of the file lib/gener/view.php of the component Visitors Module. The manipulation of the argument original/converted leads to cross site scripting. It is possible to initiate the attack remotely. The patch is named d64fcba4882a50e21cdbec3eb4a080cb694d26ee. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218895.
CVSS 3.5