Medium severity5.4NVD Advisory· Published Aug 3, 2021· Updated Jun 17, 2026
CVE-2021-36654
CVE-2021-36654
Description
CMSuno 1.7 is vulnerable to an authenticated stored cross site scripting in modifying the filename parameter (tgo) while updating the theme.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- CMSuno/CMSunodescription
- Range: 1.7
- cpe:2.3:a:cmsuno_project:cmsuno:1.7:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/163737/CMSuno-1.7-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- github.com/boiteasite/cmsuno/issues/17nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.