Cross-site scripting (XSS) vulnerability in the Files module in Kasseler CMS 1.3.0 and 1.3.1 Lite allows remote malicious users to inject arbitrary web script or HTML via the cid parameter in a Category action to index.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kasseler-cms kasseler cms 1.3.0 |
||
kasseler-cms kasseler cms 1.3.1 |