mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-29 16:29:28 +02:00
823 B
823 B
CVE-2018-14686
Description
system/edit_book.php in XYCMS 1.7 has stored XSS via a crafted add_do.php request, related to add_book.php.
POC
Reference
- https://github.com/TonyKentClark/MyCodeAudit/blob/master/xycms%20%20v1.7
- https://github.com/TonyKentClark/MyCodeAudit/blob/master/xycms%20%20v1.7