Lucene search

K
cvelistMitreCVELIST:CVE-2020-27388
HistoryOct 23, 2020 - 7:59 p.m.

CVE-2020-27388

2020-10-2319:59:37
mitre
www.cve.org
2
cve-2020-27388
yourls admin panel
xss vulnerabilities
authenticated user
php plugin
malicious payload
stored xss

EPSS

0.001

Percentile

26.9%

Multiple Stored Cross Site Scripting (XSS) vulnerabilities exist in the YOURLS Admin Panel, Versions 1.5 - 1.7.10. An authenticated user must modify a PHP plugin with a malicious payload and upload it, resulting in multiple stored XSS issues.

EPSS

0.001

Percentile

26.9%

Related for CVELIST:CVE-2020-27388