Lucene search

K
cvelistMitreCVELIST:CVE-2020-18475
HistoryAug 26, 2021 - 5:28 p.m.

CVE-2020-18475

2021-08-2617:28:49
mitre
www.cve.org
5
cve-2020-18475
cross site scripting
hucart cms 5.7.4
mes_title field
malicious script
email

EPSS

0.001

Percentile

24.8%

Cross Site Scripting (XSS) vulnerabilty exists in Hucart CMS 5.7.4 is via the mes_title field. The first user inserts a malicious script into the header field of the outbox and sends it to other users. When other users open the email, the malicious code will be executed.

EPSS

0.001

Percentile

24.8%

Related for CVELIST:CVE-2020-18475