ZeroHour

CVE-2020-19156

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p56
Published
()
Modified
Description

Cross Site Scripting (XSS) in Ari Adminer v1 allows remote attackers to execute arbitrary code via the 'Title' parameter of the 'Add New Connections' component when the 'save()' function is called.

Vendors
ari-soft
Products
ari adminer
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.