ss122-0ss/BOSSCMS

ss122-0ss/BOSSCMS

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
5.4 MEDIUM

BOSSCMS v3.10 is vulnerable to Cross Site Request Forgery (CSRF) in name="head_code" or name="foot_code."

7.1 HIGH

Cross Site Scripting (XSS) vulnerability in BOSSCMS v3.10 allows attackers to run arbitrary code via the header code and footer code fields in code configuration.