Cross-Site Scripting (XSS) Vulnerability in Dotclear v2.11.2: admin/blogs.php and admin/users.php

Cross-Site Scripting (XSS) Vulnerability in Dotclear v2.11.2: admin/blogs.php and admin/users.php

CVE-2017-6446 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

XSS was discovered in Dotclear v2.11.2, affecting admin/blogs.php and admin/users.php with the sortby and order parameters.

Learn more about our User Device Pen Test.