CVE ID:

CVE-2018-9992

Details:

Frog CMS 0.9.5 has XSS via the name field of a new "File" or "Directory" on the admin/?/plugin/file_manager/browse/ screen.

References:

:https://gist.github.com/priyanksethi/48cce2fc4257213c8aca91e3c82a4ad3

ZeroDayLab Assigned Tags:

CROSS SITE SCRIPTING - What is Cross Site Scripting?