← Back to CVE List
CVE-2017-15872
Published:
2017-10-24T20:29Z
Last Modified:
2024-11-21T03:15Z
Source:
MITRE CVE List
License:
MITRE-CVE-TOS
phpwcms 1.8.9 has XSS in include/inc_tmpl/admin.edituser.tmpl.php and include/inc_tmpl/admin.newuser.tmpl.php via the username (aka new_login) field. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt