Medium severity5.4NVD Advisory· Published Mar 27, 2017· Updated May 13, 2026
CVE-2017-6878
CVE-2017-6878
Description
Cross-site scripting (XSS) vulnerability in MetInfo 5.3.15 allows remote authenticated users to inject arbitrary web script or HTML via the name_2 parameter to admin/column/delete.php.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- packetstormsecurity.com/files/141689/MetInfo-5.3.15-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2017/Mar/49nvdExploitMailing ListThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/96974nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.