CVE-2019-17368: S-CMS

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

S-CMS v1.5 has XSS in tpl.php via the member/member_login.php from parameter.

Affected products

  • S-CMS S-CMS: version 1.5 only

Published 2019-10-09. Last modified 2026-06-17.