BigTree CMS 4.2.3 Multiple Cross-Site-Scripting Vulnerabilities

Posted by Curesec Research Team on Aug 12

BigTree CMS 4.2.3: Multiple Cross Site Scripting Vulnerabilities
Security Advisory – Curesec Research Team

Online Reference:
http://blog.curesec.com/article/blog/BigTree-CMS-423-Multiple-Cross-Site-Scripting-Vulnerabilities-38.html

1. Introduction

Affected Product: BigTree CMS 4.2.3
Fixed in: 4.2.4
Fixed Version Link:
https://github.com/bigtreecms/BigTree-CMS/archive/4.2.3.zip
Vendor Contact: contribute ()…