CVE-2020-15869: XSS
Published Jul 31, 2020
·Updated
Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (issue 1 of 2).
Affected Software
2 affected components
Sonatype Nexus Repository Manager 3<3.25.1
Sonatype Nexus Repository Manager 3<3.25.1
Remediation
Patch Available
Event History
Jul 31, 2020
CVE Published
via MITRE·07:49 PM
Data Sourced
via MITRE·07:49 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-15869?
CVE-2020-15869 has a medium severity rating due to its potential for cross-site scripting (XSS) vulnerabilities.
2
How do I fix CVE-2020-15869?
To resolve CVE-2020-15869, upgrade your Sonatype Nexus Repository Manager to version 3.25.1 or later.
3
What versions are affected by CVE-2020-15869?
CVE-2020-15869 affects Sonatype Nexus Repository Manager OSS and Pro versions before 3.25.1.
4
What type of vulnerability is CVE-2020-15869?
CVE-2020-15869 is categorized as a cross-site scripting (XSS) vulnerability.
5
Is CVE-2020-15869 considered critical?
No, CVE-2020-15869 is not considered critical, but it can still be exploited if not patched.