← Back to CVE List

CVE-2019-7409

Published: 2019-05-13T14:29Z
Last Modified: 2024-11-21T04:48Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Multiple cross-site scripting (XSS) vulnerabilities in ProfileDesign CMS v6.0.2.5 allows remote attackers to inject arbitrary web script or HTML via the (1) page, (2) gbs, (3) side, (4) id, (5) imgid, (6) cat, or (7) orderby parameter. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt