CVE-2022-45017

Description

A cross-site scripting (XSS) vulnerability in the Overview Page settings module of WBCE CMS v1.5.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Post Loop field.

References

Third Party Advisory
ExploitIssue TrackingThird Party Advisory
Third Party Advisory

CvssV3 impact

Could not find any metrics

CvssV2 impact

Could not find any metrics