CVE-2019-15750: Sitos Six

Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.

A Cross-Site Scripting (XSS) vulnerability in the blog function in SITOS six Build v6.2.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.

Affected products

  • Sitos Sitos Six: version 6.2.1 only

Published 2019-10-07. Last modified 2026-06-17.