First published: Fri Jun 19 2020(Updated: )
CMS Made Simple 2.2.14 allows XSS via a Search Term to the admin/moduleinterface.php?mact=ModuleManager page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cmsmadesimple Cms Made Simple | =2.2.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-14926 is a vulnerability in CMS Made Simple 2.2.14 that allows for XSS (Cross-Site Scripting) attacks through a search term on the admin/moduleinterface.php?mact=ModuleManager page.
CVE-2020-14926 affects CMS Made Simple 2.2.14, exposing it to XSS attacks when a search term is entered on the admin/moduleinterface.php?mact=ModuleManager page.
The severity of CVE-2020-14926 is classified as medium with a CVSS score of 5.4.
To fix CVE-2020-14926, users should upgrade their CMS Made Simple installation to a version that is not affected by the vulnerability.
More information about CVE-2020-14926 can be found at the following reference: http://dev.cmsmadesimple.org/bug/view/12324