D4rkP0w4r/AeroCMS-Add_Posts-Stored_XSS-Poc

D4rkP0w4r/AeroCMS-Add_Posts-Stored_XSS-Poc

GitHubGitHub
Unavailable
This project is no longer available (or publicly accessible) from GitHub
Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
4.8 MEDIUM3.5 LOW

AeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via add_post.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Post Title text field.