CVE-2020-15031

Publication date

2020-07-07 15:34:16

Family

mitre

State

PUBLISHED

Description

NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Assets-Management.php chg parameter.