First published: Fri Mar 20 2020(Updated: )
The Filemanager in CMS Made Simple 2.2.13 has stored XSS via a .pxd file, as demonstrated by m1_files[] to admin/moduleinterface.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cmsmadesimple Cms Made Simple | =2.2.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability in CMS Made Simple is CVE-2020-10681.
CVE-2020-10681 has a severity rating of medium.
The vulnerability CVE-2020-10681 manifests as stored cross-site scripting (XSS) through a .pxd file in the Filemanager of CMS Made Simple 2.2.13.
The affected software version of this vulnerability in CMS Made Simple is version 2.2.13.
To fix the vulnerability CVE-2020-10681 in CMS Made Simple, update to a version beyond 2.2.13.