The removeXSS function in App/Common/common.php (called from App/Modules/Index/Action/SearchAction.class.php) in EasyCMS v1.4 allows XSS via an onhashchange event.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T10:32:53.919Z
Reserved: 2018-09-09T00:00:00
Link: CVE-2018-16759
No data.
Status : Modified
Published: 2018-09-09T21:29:00.243
Modified: 2024-11-21T03:53:17.800
Link: CVE-2018-16759
No data.