VDB
Sign up
MEDIUM6.1

GHSA-pwr7-j6g3-hmx6

GeniXCMS XSS Vulnerability

Details

GeniXCMS 1.1.5 has XSS via the from, id, lang, menuid, mod, q, status, term, to, or token parameter. NOTE: this might overlap CVE-2017-14761, CVE-2017-14762, or CVE-2017-14765.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/genix/cms
Introduced in: 0

No fixed version published yet for genix/cms (composer). Pin to a known-safe version or switch to an alternative.

References