Логотип exploitDog
bind:CVE-2020-36411
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-36411

Количество 2

Количество 2

nvd логотип

CVE-2020-36411

больше 4 лет назад

A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Path for the {page_image} tag:" or "Path for thumbnail field:" parameters under the "Content Editing Settings" module.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-32rv-qwgj-73fj

больше 3 лет назад

A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Path for the {page_image} tag:" or "Path for thumbnail field:" parameters under the "Content Editing Settings" module.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-36411

A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Path for the {page_image} tag:" or "Path for thumbnail field:" parameters under the "Content Editing Settings" module.

CVSS3: 5.4
0%
Низкий
больше 4 лет назад
github логотип
GHSA-32rv-qwgj-73fj

A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Path for the {page_image} tag:" or "Path for thumbnail field:" parameters under the "Content Editing Settings" module.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу