ZeroHour

CVE-2020-27377

PoC
CVSS 3.1
4.8 medium
EPSS
<1%p44
Published
()
Modified
Description

A cross-site scripting (XSS) vulnerability was discovered in the Administrator panel on the 'Setting News' module on CMS Made Simple 2.2.14 which allows an attacker to execute arbitrary web scripts.

Vendors
cmsmadesimple
Products
cms made simple
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.