CVE-2018-18416

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
19/10/2018
Last modified:
04/12/2018

Description

LANGO Codeigniter Multilingual Script 1.0 has XSS in the input and upload sections, as demonstrated by the site_name parameter to the admin/settings/update URI.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pokkho:lango:1.0:*:*:*:*:*:*:*