Vulnerabilities > Finecms Project > Finecms > Low

DATE CVE VULNERABILITY TITLE RISK
2017-07-13 CVE-2017-11201 Cross-site Scripting vulnerability in Finecms Project Finecms
application/core/controller/images.php in FineCMS through 2017-07-12 allows remote authenticated admins to conduct XSS attacks by uploading an image via a route=images action.
3.5