Description
A vulnerability, which was classified as problematic, was found in Mingsoft MCMS 5.2.8. Affected is an unknown function of the file search.do. The manipulation of the argument content_title leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-215112.
Remediation
References
https://gitee.com/mingSoft/MCMS/issues/I5MT8Y
https://vuldb.com/?id.215112
Related Vulnerabilities
CVE-2020-9480 Vulnerability in maven package org.apache.spark:spark-network-common_2.12
CVE-2020-12827 Vulnerability in npm package mjml
CVE-2021-3780 Vulnerability in npm package peertube
CVE-2022-46366 Vulnerability in maven package tapestry:tapestry
CVE-2020-7642 Vulnerability in maven package org.webjars.bower:lazysizes