3.5
CVSSv2

CVE-2018-9236

Published: 04/04/2018 Updated: 02/05/2018
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

iScripts EasyCreate 3.2.1 has Stored Cross-Site Scripting in the "Site title" field.

Vulnerable Product Search on Vulmon Subscribe to Product

iscripts easycreate 3.2.1

Exploits

# Exploit Title: iScripts Easycreate 321 - Stored Cross-Site Scripting # Date: 02/04/2018 # Exploit Author: ManhNho # Vendor Homepage: wwwiscriptscom # Demo Page: wwwdemoiscriptscom/easycreate/demo/ # Version: 321 # Tested on: Windows 10 # Category: Webapps # CVE: CVE-2018-9236 # CVE: CVE-2018-9237 1 Description ======== ...
iScripts Easycreate version 321 suffers from a stored cross site scripting vulnerability ...