First published: Wed Apr 28 2021(Updated: )
Cross Site Scripting (XSS) in MiniCMS v1.10 allows remote attackers to execute arbitrary code by injecting commands via a crafted HTTP request to the component "/mc-admin/post-edit.php".
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
1234n Minicms | =1.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-17999 is a vulnerability known as Cross Site Scripting (XSS) in MiniCMS v1.10.
CVE-2020-17999 allows remote attackers to execute arbitrary code by injecting commands via a crafted HTTP request to the component "/mc-admin/post-edit.php".
CVE-2020-17999 has a severity level of medium with a CVSS score of 6.1.
CVE-2020-17999 affects MiniCMS v1.10.
The fix for CVE-2020-17999 is not provided in the given information. Please refer to the vendor's website or official documentation for the fix.