CVE-2020-14926: XSS
CMS Made Simple 2.2.14 allows XSS via a Search Term to the admin/moduleinterface.php?mact=ModuleManager page.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-14926?
CVE-2020-14926 is a vulnerability in CMS Made Simple 2.2.14 that allows for XSS (Cross-Site Scripting) attacks through a search term on the admin/moduleinterface.php?mact=ModuleManager page.
How does CVE-2020-14926 affect CMS Made Simple?
CVE-2020-14926 affects CMS Made Simple 2.2.14, exposing it to XSS attacks when a search term is entered on the admin/moduleinterface.php?mact=ModuleManager page.
What is the severity of CVE-2020-14926?
The severity of CVE-2020-14926 is classified as medium with a CVSS score of 5.4.
How can I fix CVE-2020-14926?
To fix CVE-2020-14926, users should upgrade their CMS Made Simple installation to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2020-14926?
More information about CVE-2020-14926 can be found at the following reference: http://dev.cmsmadesimple.org/bug/view/12324