CVE-2018-18840: Sem-CMS Semcms
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexmetatit parameter.
Affected products
- Sem-CMS Semcms: version 3.4 only
Published 2018-10-30. Last modified 2026-06-17.