Medium severity6.1NVD Advisory· Published Jun 23, 2017· Updated May 13, 2026
CVE-2017-9356
CVE-2017-9356
Description
Sitecore.NET 7.1 through 7.2 has a Cross Site Scripting Vulnerability via the searchStr parameter to the /Search-Results URI.
Affected products
2cpe:2.3:a:sitecore:sitecore.net:7.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sitecore:sitecore.net:7.1:*:*:*:*:*:*:*
- cpe:2.3:a:sitecore:sitecore.net:7.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- seclists.org/bugtraq/2017/Jun/43nvdExploitMailing ListVDB Entry
- www.securityfocus.com/bid/99239nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.