CVE-2017-11629
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 2.6%
exploitation probability
2.6%top 16% of all CVEs
observed exploitation
nono source reports it
dayrui FineCms through 5.0.10 has Cross Site Scripting (XSS) in controllers/api.php via the function parameter in a c=api&m=data2 request.
Affected products
n/a · n/a