Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21693
HistoryOct 14, 2019 - 5:40 a.m.

Cross-Site Scripting (XSS)

2019-10-1405:40:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.01 Low

EPSS

Percentile

83.9%

hotarucms/hotarucms is vulnerable to cross-site scripting (XSS). A remote attacker is able to inject arbitrary Javascript into a victim’s browser by storing malicious Javascript code in the site_name parameter. This CVE ID is related to CVE-2011-4709.

CPENameOperatorVersion
hotarucms/hotarucmsle1.7.2

0.01 Low

EPSS

Percentile

83.9%

Related for VERACODE:21693