Security Advisory

CVE-2020-15864

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-01-17 19:42:49
Last updated 2024-08-04 13:30:23
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Quali CloudShell 9.3. An XSS vulnerability in the login page allows an attacker to craft a URL, with a constructor.constructor substring in the username field, that executes a payload when the user visits the /Account/Login page.