Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-7418 | A vulnerability was found in shishuocms 1.1. It has been classified as problematic. Affected is an unknown function of the file /manage/folder/add.json of the component Directory Deletion Page. The manipulation of the argument folderName leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 05 Mar 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qzw1210
Qzw1210 shishuocms |
|
| CPEs | cpe:2.3:a:qzw1210:shishuocms:1.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Qzw1210
Qzw1210 shishuocms |
Tue, 04 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 04 Mar 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in shishuocms 1.1. It has been classified as problematic. Affected is an unknown function of the file /manage/folder/add.json of the component Directory Deletion Page. The manipulation of the argument folderName leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | shishuocms Directory Deletion Page add.json cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-03-04T16:39:18.587Z
Reserved: 2025-03-03T18:09:48.291Z
Link: CVE-2025-1892
Updated: 2025-03-04T16:39:05.576Z
Status : Analyzed
Published: 2025-03-04T01:15:11.147
Modified: 2025-03-05T20:16:46.363
Link: CVE-2025-1892
No data.
OpenCVE Enrichment
No data.
EUVD