Medium severity6.1NVD Advisory· Published Sep 28, 2018· Updated Jun 17, 2026
CVE-2018-17056
CVE-2018-17056
Description
Cross-site scripting (XSS) vulnerability in ServiceStack in Progress Sitefinity CMS versions 10.2 through 11.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:progress:sitefinity_cms:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:progress:sitefinity_cms:*:*:*:*:*:*:*:*range: >=10.2,<=11.0
- (no CPE)range: >=10.2, <=11.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.