CVE-2018-5370: Bizlogicdev Xnami
Medium severity, CVSS 6.1. EPSS: 2.2% chance of exploitation in the next 30 days.
BizLogic xnami 1.0 has XSS via the comment parameter in an addComment action to the /media/ajax URI.
Affected products
- Bizlogicdev Xnami: version 1.0 only
Published 2018-01-16. Last modified 2026-06-17.