cve/2018/CVE-2018-6013.md
2024-06-18 02:51:15 +02:00

685 B

CVE-2018-6013

Description

Cross-site scripting (XSS) in BigTree 4.2.19 allows any remote users to inject arbitrary web script or HTML via the directory parameter. This issue exists in core/admin/ajax/developer/extensions/file-browser.php.

POC

Reference

Github

No PoCs found on GitHub currently.