ZeroHour

CVE-2020-19914

PoC
CVSS 3.1
6.1 medium
EPSS
<1%p52
Published
()
Modified
Description

Cross Site Scripting (XSS) in xiunobbs 4.0.4 allows remote attackers to execute arbitrary web script or HTML via the attachment upload function.

Vendors
xiuno
Products
xiunobbs
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.