CVE-2018-5370: Bizlogicdev Xnami

Medium severity, CVSS 6.1. EPSS: 2.2% chance of exploitation in the next 30 days.

BizLogic xnami 1.0 has XSS via the comment parameter in an addComment action to the /media/ajax URI.

Affected products

Published 2018-01-16. Last modified 2026-06-17.