CVE-2020-17450: XSS
Published Aug 12, 2020
·Updated
PHP-Fusion 9.03 allows XSS on the preview page.
Affected Software
1 affected component
PHP-Fusion php-fusion>=9.0<=9.03
Event History
Aug 12, 2020
CVE Published
via MITRE·09:49 PM
Data Sourced
via MITRE·09:49 PM
Description
Frequently Asked Questions
1
What is CVE-2020-17450?
CVE-2020-17450 is a vulnerability that allows Cross-Site Scripting (XSS) attacks on the preview page of PHP-Fusion 9.03.
2
How severe is CVE-2020-17450?
CVE-2020-17450 has a severity rating of 6.1, which is considered medium.
3
How does CVE-2020-17450 affect PHP-Fusion?
CVE-2020-17450 affects PHP-Fusion 9.03, allowing XSS attacks on the preview page.
4
How can I fix CVE-2020-17450?
To fix CVE-2020-17450, it is recommended to upgrade PHP-Fusion to a version that is not affected by the vulnerability.
5
Is there more information available about CVE-2020-17450?
Yes, you can find more information about CVE-2020-17450 in the reference provided: https://sec-consult.com/en/blog/advisories/multiple-cross-site-scripting-xss-vulnerabilities-in-php-fusion-cms/