Medium severity6.1NVD Advisory· Published Jun 18, 2017· Updated Jun 17, 2026
CVE-2017-9668
CVE-2017-9668
Description
In admin\addgroup.php in CMS Made Simple 2.1.6, when adding a user group, there is no XSS filtering, resulting in storage-type XSS generation, via the description parameter in an addgroup action.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:cmsmadesimple:cms_made_simple:2.1.6:*:*:*:*:*:*:*
- Range: =2.1.6
Patches
Vulnerability mechanics
References
1- github.com/XiaoZhis/ProjectSend/issues/2nvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.