Monstra CMS 1.6 allows XSS via an uploaded SVG document to the admin/index.php?id=filesmanager&path=uploads/ URI. NOTE: this is a discontinued product.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-02T19:45:40

Updated: 2024-08-05T11:37:11.532Z

Reserved: 2018-11-27T00:00:00

Link: CVE-2018-19599

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-03-02T20:15:11.320

Modified: 2020-06-24T14:15:11.757

Link: CVE-2018-19599

cve-icon Redhat

No data.