CVE-2018-16725

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
08/09/2018
Last modified:
26/10/2018

Description

An issue is discovered in baijiacms V4. XSS exists via the assets/weengine/components/zclip/ZeroClipboard.swf id parameter, aka "Non-standard use of the flash component."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:baijiacms_project:baijiacms:4.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools