The Vigile CMS is prone to multiple vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute local scripts or view files on the server, steal cookie-based authentication credentials, execute arbitrary script code in a victim's browser, and use a victim's currently active session to perform actions with the application. Vigile CMS 1.4 is vulnerable; other versions may also be affected.
The Vigile CMS is prone to multiple vulnerabilities because it fails to properly sanitize user-supplied input. An attacker may leverage these issues to execute local scripts or view files on the server, steal cookie-based authentication credentials, execute arbitrary script code in a victim's browser, and use a victim's currently active session to perform actions with the application. Vigile CMS 1.4 is vulnerable; other versions may also be affected.