mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-10 07:47:42 +02:00
642 B
642 B
CVE-2017-11127
Description
Bolt CMS 3.2.14 allows stored XSS by uploading an SVG document with a "Content-Type: image/svg+xml" header.
POC
Reference
- https://websecnerd.blogspot.in/2017/07/bolt-cms-3.html
- https://websecnerd.blogspot.in/2017/07/bolt-cms-3.html
Github
No PoCs found on GitHub currently.