Description
A vulnerability, which was classified as problematic, was found in Mingsoft MCMS 5.2.8. Affected is an unknown function of the file search.do. The manipulation of the argument content_title leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-215112.
Remediation
References
https://gitee.com/mingSoft/MCMS/issues/I5MT8Y
https://vuldb.com/?id.215112
Related Vulnerabilities
CVE-2020-26258 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2018-1002203 Vulnerability in maven package org.webjars.npm:unzipper
CVE-2017-16122 Vulnerability in npm package cuciuci
CVE-2021-23558 Vulnerability in npm package bmoor
CVE-2021-21254 Vulnerability in npm package @ckeditor/ckeditor5-markdown-gfm