A vulnerability in Amiro.CMS before 7.8.4 exists due to the failure to take measures to neutralize special elements. It allows remote attackers to conduct an Cross-Site Scripting (XSS) attack.
CWE-78 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Amiro.CMS (https://www.amiro.ru)
Amiro.CMS – 7.8.4 and earlier
True
True
Compliance Control Team