The WeChat module in YzmCMS 3.7.1 has reflected XSS via the admin/module/init.html echostr parameter, related to the valid function in application/wechat/controller/index.class.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-04-11T18:00:00

Updated: 2024-08-05T07:32:00.711Z

Reserved: 2018-04-11T00:00:00

Link: CVE-2018-10026

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-04-11T18:29:00.223

Modified: 2018-05-16T15:26:57.267

Link: CVE-2018-10026

cve-icon Redhat

No data.