Security Advisory
CVE-2020-29070
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of newsletters.