Lucene search

K
osvGoogleOSV:CVE-2020-23194
HistoryJul 02, 2021 - 6:15 p.m.

CVE-2020-23194

2021-07-0218:15:08
Google
osv.dev
6
cross site scripting
phplist
vulnerability
authenticated attackers
web scripts
html
import subscribers feature

AI Score

5.4

Confidence

High

EPSS

0.001

Percentile

24.8%

A stored cross site scripting (XSS) vulnerability in the “Import Subscribers” feature in phplist 3.5.4 and below allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload.

AI Score

5.4

Confidence

High

EPSS

0.001

Percentile

24.8%

Related for OSV:CVE-2020-23194