First published: Thu Mar 12 2020(Updated: )
Reflected XSS in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Chadhaajay Phpkb | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this XSS vulnerability is CVE-2020-10475.
The affected software for this vulnerability is Chadha PHPKB Standard Multi-Language 9.0.
The vulnerability occurs due to reflected XSS in the sort GET parameter in the admin/manage-tickets.php file of Chadha PHPKB Standard Multi-Language 9.0.
The severity rating of this vulnerability is medium (4.8).
To fix this vulnerability, it is recommended to apply the latest security patch or upgrade to a patched version of Chadha PHPKB Standard Multi-Language.