ZeroHour

CVE-2020-9461

PoC ×2
CVSS 3.1
5.4 medium
EPSS
1%p70
Published
()
Modified
Description

Octech Oempro 4.7 through 4.11 allow stored XSS by an authenticated user. The FolderName parameter of the Media.CreateFolder command is vulnerable.

Vendors
octech
Products
oempro
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.