First published: Thu Mar 12 2020(Updated: )
Reflected XSS in admin/edit-field.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chadhaajay Phpkb | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10462 is a vulnerability that allows attackers to inject arbitrary web script or HTML via the GET parameter in admin/edit-field.php in Chadha PHPKB Standard Multi-Language 9.
CVE-2020-10462 has a severity level of medium.
CVE-2020-10462 allows attackers to exploit a reflected XSS vulnerability in the admin/edit-field.php page of Chadha PHPKB Standard Multi-Language 9, potentially leading to the injection of malicious script or HTML.
To fix CVE-2020-10462, update Chadha PHPKB Standard Multi-Language to version 9.0 or later, as the vulnerability has been addressed in the latest release.
CVE-2020-10462 is associated with CWE-79, which represents the category of cross-site scripting (XSS) vulnerabilities.