Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-6908
Description:An issue was discovered in concrete5 <= 5.6.3.4. The vulnerability exists due to insufficient filtration of user-supplied data (fID) passed to the "concrete5-legacy- master/web/concrete/tools/files/selector_data.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-6908
BugTraq ID: 96891
http://www.securityfocus.com/bid/96891




© 1998-2025 E-Soft Inc. All rights reserved.