Cross-site scripting (XSS) vulnerability in /toendaCMS in toendaCMS stable 1.0.3 and earlier, and unstable 1.1 and earlier, allows remote attackers to inject arbitrary web script or HTML via the s parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Toendacms | Toenda_software_development | * | stable_1.0.3 (including) |
Toendacms | Toenda_software_development | * | unstable_1.1 (including) |