← back
CVE-2018-16139

CVE-2018-16139

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 2.3%
exploitation probability
2.3%top 18% of all CVEs
observed exploitation
nono source reports it
Cross-site scripting (XSS) vulnerability in BIBLIOsoft BIBLIOpac 2008 allows remote attackers to inject arbitrary web script or HTML via the db or action parameter to to bin/wxis.exe/bibliopac/.
Affected products
n/a · n/a