CVE Published: 09/06/2017 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: jpcert |
Vendor: TEAM DERAEMONS |
Product: DERAEMON-CMS Status : PUBLISHED
CVE-2016-7813 Description
Cross-site scripting vulnerability in DERAEMON-CMS version 0.8.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the parameters hostname, database and username.