Beveiligingsadvies

CVE-2020-18022

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-04-28 15:18:42
Laatst bijgewerkt 2024-08-04 14:00:49
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Cross Site Scripting (XSS) in Qibosoft QiboCMS v7 and earlier allows remote attackers to execute arbitrary code or obtain sensitive information by injecting arbitrary commands in a HTTP request to the "ewebeditor\3.1.1\kindeditor.js" component.