Bolt CMS 3.2.14 allows stored XSS via text input, as demonstrated by the Title field of a New Entry.
History

Fri, 14 Feb 2025 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Boltcms
Boltcms bolt
CPEs cpe:2.3:a:bolt:bolt_cms:3.2.14:*:*:*:*:*:*:* cpe:2.3:a:boltcms:bolt:3.2.14:*:*:*:*:*:*:*
Vendors & Products Bolt
Bolt bolt Cms
Boltcms
Boltcms bolt

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T17:57:57.637Z

Reserved: 2017-07-09T00:00:00

Link: CVE-2017-11128

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-07-17T19:29:00.230

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-11128

cve-icon Redhat

No data.