Lucene search

K
osvGoogleOSV:CVE-2020-10103
HistoryMar 05, 2020 - 1:15 a.m.

CVE-2020-10103

2020-03-0501:15:12
Google
osv.dev
2

6.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

22.7%

An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the File Upload functionality in Zammad. The malicious JavaScript will execute within the browser of any user who opens a specially crafted link to the uploaded file with an active Zammad session.

6.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

22.7%

Related for OSV:CVE-2020-10103