Vulnerabilities > S CMS > S CMS > 2019.10.14

DATE CVE VULNERABILITY TITLE RISK
2021-09-15 CVE-2020-19158 Cross-site Scripting vulnerability in S-Cms 20191014
Cross Site Scripting (XSS) in S-CMS build 20191014 and earlier allows remote attackers to execute arbitrary code via the 'Site Title' parameter of the component '/data/admin/#/app/config/'.
network
low complexity
s-cms CWE-79
5.4