Description
BigTree-CMS contains a Cross Site Scripting (XSS) vulnerability in /users/create that can result in The low-privileged users can use this vulnerability to attack high-privileged(Developer) users.. This attack appear to be exploitable via no. This vulnerability appears to have been fixed in after commit b652cfdc14d0670c81ac4401ad5a04376745c279.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-1916 | BigTree-CMS contains a Cross Site Scripting (XSS) vulnerability in /users/create that can result in The low-privileged users can use this vulnerability to attack high-privileged(Developer) users.. This attack appear to be exploitable via no. This vulnerability appears to have been fixed in after commit b652cfdc14d0670c81ac4401ad5a04376745c279. |
References
| Link | Providers |
|---|---|
| https://github.com/bigtreecms/BigTree-CMS/issues/328 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T12:40:47.245Z
Reserved: 2018-04-08T00:00:00.000Z
Link: CVE-2018-1000521
No data.
Status : Modified
Published: 2018-06-26T16:29:01.400
Modified: 2024-11-21T03:40:06.753
Link: CVE-2018-1000521
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD