CVE

CVE-2017-1000193

CVE-2017-1000193

October CMS build 412 is vulnerable to stored WCI (a.k.a XSS) in brand logo image name resulting in JavaScript code execution in the victim’s browser.

Source: CVE-2017-1000193

Exit mobile version