CVE-2018-16371: Pescms Team

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

PESCMS Team 2.2.1 has multiple reflected XSS via the keyword parameter: g=Team&m=User&a=index&keyword=, g=Team&m=User_group&a=index&keyword=, g=Team&m=Department&a=index&keyword=, and g=Team&m=Bulletin&a=index&keyword=.

Affected products

  • Pescms Pescms Team: version 2.2.1 only

Published 2018-09-03. Last modified 2026-06-17.