Vulnerabilities > Xycms Project

DATE CVE VULNERABILITY TITLE RISK
2018-07-28 CVE-2018-14686 Cross-site Scripting vulnerability in Xycms Project Xycms 1.7
system/edit_book.php in XYCMS 1.7 has stored XSS via a crafted add_do.php request, related to add_book.php.
network
low complexity
xycms-project CWE-79
6.1