Security Advisory
CVE-2020-24901
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The default installation of Krpano Panorama Viewer version <=1.20.8 is vulnerable to Reflected XSS due to insecure remote js load in file viewer/krpano.html, parameter plugin[test].url.