CVE-2020-23050

Publication date

2021-10-22 19:20:28

Family

mitre

State

PUBLISHED

Description

TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a HTML injection vulnerability in the userFirstName parameter of the user account input field. This vulnerability allows attackers to execute phishing attacks, external redirects, and arbitrary code.