Description
Cross Site Scripting (XSS) vulnerabilty exists in Hucart CMS 5.7.4 is via the mes_title field. The first user inserts a malicious script into the header field of the outbox and sends it to other users. When other users open the email, the malicious code will be executed.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-10399 | Cross Site Scripting (XSS) vulnerabilty exists in Hucart CMS 5.7.4 is via the mes_title field. The first user inserts a malicious script into the header field of the outbox and sends it to other users. When other users open the email, the malicious code will be executed. |
References
| Link | Providers |
|---|---|
| https://github.com/joelister/bug/issues/7 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T14:00:49.472Z
Reserved: 2020-08-13T00:00:00.000Z
Link: CVE-2020-18475
No data.
Status : Modified
Published: 2021-08-26T18:15:07.827
Modified: 2024-11-21T05:08:38.520
Link: CVE-2020-18475
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD