Description
WUZHI CMS 4.1.0 has stored XSS via the "Membership Center" "I want to ask" "detailed description" field under the index.php?m=member URI.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-9178 | WUZHI CMS 4.1.0 has stored XSS via the "Membership Center" "I want to ask" "detailed description" field under the index.php?m=member URI. |
References
| Link | Providers |
|---|---|
| https://github.com/wuzhicms/wuzhicms/issues/153 |
|
History
Mon, 05 May 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wuzhicms wuzhicms
|
|
| CPEs | cpe:2.3:a:wuzhicms:wuzhicms:4.1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Wuzhicms wuzhi Cms
|
Wuzhicms wuzhicms
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T10:47:04.479Z
Reserved: 2018-09-23T00:00:00.000Z
Link: CVE-2018-17425
No data.
Status : Modified
Published: 2019-03-07T23:29:01.033
Modified: 2025-05-05T18:10:51.717
Link: CVE-2018-17425
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD