CVE-2020-15037

Publication date

2020-07-07 14:02:52

Family

mitre

State

PUBLISHED

Description

NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Reports-Devices.php page st[] parameter.