Lucene search

K
cvelistMitreCVELIST:CVE-2017-18175
HistoryFeb 12, 2018 - 2:00 p.m.

CVE-2017-18175

2018-02-1214:00:00
mitre
www.cve.org
2
progress sitefinity
xss
templateconfiguration
content management
img element
cve-2017-18175

EPSS

0.001

Percentile

45.8%

Progress Sitefinity 9.1 has XSS via the Content Management Template Configuration (aka Templateconfiguration), as demonstrated by the src attribute of an IMG element. This is fixed in 10.1.

EPSS

0.001

Percentile

45.8%

Related for CVELIST:CVE-2017-18175