CVE-2020-8612
—CVSS 3.1
9.0 critical
EPSS
2%p75
Published
()
Modified
Description
In Progress MOVEit Transfer 2019.1 before 2019.1.4 and 2019.2 before 2019.2.1, a REST API endpoint failed to adequately sanitize malicious input, which could allow an authenticated attacker to execute arbitrary code in a victim's browser, aka XSS.
In the news0 stories
No ingested article mentions this CVE yet.