Security Advisory

CVE-2020-9390

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-02-03 00:00:00
Last updated 2024-08-04 10:26:16
Assigner mitre
State PUBLISHED

Description

SquaredUp allowed Stored XSS before version 4.6.0. A user was able to create a dashboard that executed malicious content in iframe or by uploading an SVG that contained a script.