Cross-site scripting (XSS) vulnerability in Dragonfly CMS 9.0.6.1 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the search field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cpg-nuke dragonfly cms 9.0.4.0 |
||
cpg-nuke dragonfly cms 9.0.5.0 |
||
cpg-nuke dragonfly cms 9.0.2.0 |
||
cpg-nuke dragonfly cms 9.0.3.0 |
||
cpg-nuke dragonfly cms 9.0.1.1 |
||
cpg-nuke dragonfly cms 9.0.6.0 |
||
cpg-nuke dragonfly cms 9.0.6.1 |