Bolt CMS <362 - Cross-Site Scripting Vulnerability
Bolt CMS <362 - Cross-Site Scripting Vulnerability
CVE-2018-19933
cvemitreorg/cgi-bin/cvenamecgi?name=CVE-2018-19933
Proof of Concept
To exploit vulnerability, Bolt CMS <362 allows XSS via text input click preview button as demonstrated by the Title field of a Configured and New Entry
POST