Логотип exploitDog
bind:CVE-2020-37072
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37072

Количество 2

Количество 2

nvd логотип

CVE-2020-37072

5 дней назад

Victor CMS 1.0 contains a stored cross-site scripting vulnerability in the 'comment_author' POST parameter that allows attackers to inject malicious scripts. Attackers can submit crafted JavaScript payloads through the comment submission form to execute arbitrary code in victim browsers.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-v5w7-x5c5-8hg8

5 дней назад

Victor CMS 1.0 contains a stored cross-site scripting vulnerability in the 'comment_author' POST parameter that allows attackers to inject malicious scripts. Attackers can submit crafted JavaScript payloads through the comment submission form to execute arbitrary code in victim browsers.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37072

Victor CMS 1.0 contains a stored cross-site scripting vulnerability in the 'comment_author' POST parameter that allows attackers to inject malicious scripts. Attackers can submit crafted JavaScript payloads through the comment submission form to execute arbitrary code in victim browsers.

CVSS3: 7.2
0%
Низкий
5 дней назад
github логотип
GHSA-v5w7-x5c5-8hg8

Victor CMS 1.0 contains a stored cross-site scripting vulnerability in the 'comment_author' POST parameter that allows attackers to inject malicious scripts. Attackers can submit crafted JavaScript payloads through the comment submission form to execute arbitrary code in victim browsers.

CVSS3: 7.2
0%
Низкий
5 дней назад

Уязвимостей на страницу