ZeroHour

CVE-2020-18455

PoC
CVSS 3.1
4.8 medium
EPSS
<1%p43
Published
()
Modified
Description

Cross Site Scripting (XSS) vulnerability exists in bycms v3.0.4 via the title parameter in the edit function in Document.php.

Vendors
bycms project
Products
bycms
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.