ZeroHour

CVE-2020-23718

PoC
CVSS 3.1
9.6 critical
EPSS
1%p70
Published
()
Modified
Description

Cross site scripting (XSS) vulnerability in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the route parameter to index.php.

Vendors
zibbs project
Products
zibbs
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.