Discuz! DiscuzX through X3.4 has reflected XSS via forum.php?mod=post&action=newthread because data/template/1_diy_portal_view.tpl.php does not restrict the content.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-04-22T15:00:00Z

Updated: 2024-09-16T18:49:41.535Z

Reserved: 2018-04-22T00:00:00Z

Link: CVE-2018-10298

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-04-22T15:29:00.500

Modified: 2018-05-18T14:20:27.057

Link: CVE-2018-10298

cve-icon Redhat

No data.