Beveiligingsadvies

CVE-2020-24860

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-10-01 13:55:24
Laatst bijgewerkt 2024-08-04 15:19:09
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

CMS Made Simple 2.2.14 allows an authenticated user with access to the Content Manager to edit content and put persistent XSS payload in the affected text fields. The user can get cookies from every authenticated user who visits the website.