Cross-site scripting (XSS) vulnerability in htdocs/php.php in OpenConcept Back-End CMS 0.4.7 allows remote attackers to inject arbitrary web script or HTML via the page[] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Back-end_cms | Openconcept | 0.4.7 (including) | 0.4.7 (including) |