CVE-2020-18035

Publication date

2021-04-29 22:53:25

Family

mitre

State

PUBLISHED

Description

Cross Site Scripting (XSS) in Jeesns v1.4.2 allows remote attackers to execute arbitrary code by injecting commands into the "CKEditorFuncNum" parameter in the component "CkeditorUploadController.java".