6.1
CVSSv3

CVE-2019-13234

Published: 27/08/2019 Updated: 02/09/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

In the Alkacon OpenCms Apollo Template 10.5.4 and 10.5.5, there is XSS in the search engine.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

alkacon opencms apollo template 10.5.4

alkacon opencms apollo template 10.5.5

Exploits

# Exploit Title: Alkacon OpenCMS 105x - Multiple XSS in Apollo Template # Google Dork: N/A # Date: 18/07/2019 # Exploit Author: Aetsu # Vendor Homepage: wwwopencmsorg # Software Link: githubcom/alkacon/apollo-template # Version: 105x # Tested on: 1055 / 1054 # CVE : CVE-2019-13234, CVE-2019-13235 1 Reflected XSS in the s ...
Alkacon OpenCMS version 105x suffers from multiple cross site scripting vulnerabilities in the Apollo Template ...