Lucene search

K
osvGoogleOSV:CVE-2020-25878
HistoryJul 09, 2021 - 10:15 p.m.

CVE-2020-25878

2021-07-0922:15:08
Google
osv.dev
2
cve-2020-25878
cross site scripting
blackcat cms

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

24.8%

A stored cross site scripting (XSS) vulnerability in the ‘Admin-Tools’ feature of BlackCat CMS 1.3.6 allows authenticated attackers to execute arbitrary web scripts or HTML via crafted payloads entered into the ‘Output Filters’ and ‘Droplets’ modules.

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

24.8%

Related for OSV:CVE-2020-25878