Security Advisory

CVE-2020-25890

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-17 20:05:23
Last updated 2024-08-04 15:49:06
Assigner mitre
State PUBLISHED

Description

The web application of Kyocera printer (ECOSYS M2640IDW) is affected by Stored XSS vulnerability, discovered in the addition a new contact in "Machine Address Book". Successful exploitation of this vulnerability can lead to session hijacking of the administrator in the web application or the execution of unwanted actions