e107 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-16381 - Vulnerability Database

e107 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-16381

Medium
Reference: CVE-2018-16381
Title: e107 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

e107 2.1.8 has XSS via the e107_admin/users.phpmodemainampactionlist user_loginname parameter.