First published: Mon May 08 2023(Updated: )
Cross-site scripting (XSS) vulnerability in NoneCms 1.3.0 allows remote attackers to inject arbitrary web script or HTML via feedback feature.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
5none Nonecms | =1.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the cross-site scripting (XSS) vulnerability in NoneCms is CVE-2020-18282.
The severity of the CVE-2020-18282 vulnerability is medium, with a severity value of 6.1.
The CVE-2020-18282 vulnerability in NoneCms 1.3.0 allows remote attackers to inject arbitrary web script or HTML via the feedback feature.
Remote attackers can exploit the CVE-2020-18282 vulnerability by injecting arbitrary web script or HTML through the feedback feature in NoneCms 1.3.0.
It is recommended to update to a patched version or apply the necessary fixes provided by the NoneCms project to mitigate the CVE-2020-18282 vulnerability.