Lucene search

K
osvGoogleOSV:CVE-2020-23371
HistoryMay 10, 2021 - 11:15 p.m.

CVE-2020-23371

2021-05-1023:15:07
Google
osv.dev
9

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.5%

Cross-site scripting (XSS) vulnerability in static/admin/js/kindeditor/plugins/multiimage/images/swfupload.swf in noneCms v1.3.0 allows remote attackers to inject arbitrary web script or HTML via the movieName parameter.

CPENameOperatorVersion
nonecmseq1.3.0
nonecmseq1.1.0
nonecmseq1.2.0

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.5%

Related for OSV:CVE-2020-23371