CVE-2018-1999021: Gleeztech Gleezcms
Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.
Gleezcms Gleez Cms version 1.3.0 contains a Cross Site Scripting (XSS) vulnerability in Profile page that can result in Inject arbitrary web script or HTML via the profile page editor. This attack appear to be exploitable via The victim must navigate to the attacker's profile page.
Affected products
- Gleeztech Gleezcms: version 1.3.0 only
Published 2018-07-23. Last modified 2026-06-17.