Cross-Site Scripting (XSS) Vulnerability in Evolution CMS 2.0.x via Description and New Category Location in Template

Cross-Site Scripting (XSS) Vulnerability in Evolution CMS 2.0.x via Description and New Category Location in Template

CVE-2019-14518 · LOW Severity

AV:N/AC:M/AU:S/C:N/I:P/A:N

Evolution CMS 2.0.x allows XSS via a description and new category location in a template. NOTE: the vendor states that the behavior is consistent with the "access policy in the administration panel.

Learn more about our Cms Pen Testing.