e107 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-17423 - Vulnerability Database

e107 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-17423

Medium
Reference: CVE-2018-17423
Title: e107 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

An issue was discovered in e107 v2.1.9. There is a XSS attack on e107_admin/comment.php.