Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-11629

dayrui FineCms through 5.0.10 has Cross Site Scripting (XSS) in controllers/api.php via the function parameter in a c=api&m=data2 request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.2%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2017-11629
  • Finecms » Finecms » Version: 1.9.5
    cpe:2.3:a:finecms:finecms:1.9.5
  • Finecms » Finecms » Version: 5.0.10
    cpe:2.3:a:finecms:finecms:5.0.10
  • Finecms » Finecms » Version: 5.0.9
    cpe:2.3:a:finecms:finecms:5.0.9


Contact Us

Shodan ® - All rights reserved