ZeroHour

CVE-2020-27533

PoC ×2
CVSS 3.1
5.4 medium
EPSS
4%p89
Published
()
Modified
Description

A Cross Site Scripting (XSS) issue was discovered in the search feature of DedeCMS v.5.8 that allows malicious users to inject code into web pages, and other users will be affected when viewing web pages.

Vendors
dedecms
Products
dedecms
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.