Record summary

CVE-2018-10118 has a selected CVSS score of 4.8 (medium); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

Monstra CMS 3.0.4 has Stored XSS via the Name field on the Create New Page screen under the admin/index.php?id=pages URI, related to plugins/box/pages/pages.admin.php.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Proofs of concept

2

Catalogued exploits

ExploitDBMonstra CMS < 3.0.4 - Cross-Site Scripting (1)ExploitDB exploitby DEEPIN2Not analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubGeunSam2/CVE-2018-10118Repository PoCby GeunSam2Stars: 1Not analyzed2 files

1.1 KiB

GitHub

PoC details

References

3