Medium severity6.1NVD Advisory· Published Aug 25, 2017· Updated Jun 17, 2026
CVE-2017-13697
CVE-2017-13697
Description
controllers/member/api.php in dayrui FineCms 5.0.11 has XSS related to the dirname variable.
Affected products
2cpe:2.3:a:finecms_project:finecms:5.0.11:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:finecms_project:finecms:5.0.11:*:*:*:*:*:*:*
- (no CPE)range: =5.0.11
Patches
Vulnerability mechanics
References
1- www.bendawang.site/article/The-latest-version-of-finecms-unlimited-XSSnvdThird Party Advisory
News mentions
0No linked articles in our index yet.