CVE-2018-18296: Metinfo
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
MetInfo 6.1.2 has XSS via the /admin/index.php bigclass parameter in an n=column&a=doadd action.
Affected products
- Metinfo Metinfo: version 6.1.2 only
Published 2018-10-15. Last modified 2026-06-17.