CVE-2020-18324: XSS
Published Mar 4, 2022
·Updated
Cross Site Scripting (XSS) vulnerability exists in Subrion CMS 4.2.1 via the q parameter in the Kickstart template.
Affected Software
1 affected component
Intelliants Subrion CMS=4.2.1
Event History
Mar 4, 2022
CVE Published
via MITRE·02:15 PM
Data Sourced
via MITRE·02:15 PM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-18324?
CVE-2020-18324 is a Cross Site Scripting (XSS) vulnerability that exists in Subrion CMS 4.2.1 via the q parameter in the Kickstart template.
2
How severe is CVE-2020-18324?
CVE-2020-18324 has a severity rating of medium, with a CVSS score of 6.1.
3
Which software is affected by CVE-2020-18324?
Subrion CMS 4.2.1 is affected by CVE-2020-18324.
4
How can the XSS vulnerability be exploited in Subrion CMS 4.2.1?
The XSS vulnerability in Subrion CMS 4.2.1 can be exploited via the q parameter in the Kickstart template.
5
Are there any references related to CVE-2020-18324?
References related to CVE-2020-18324 can be found at http://intelliants.com, http://subrion.com, and https://github.com/hamm0nz/CVE-2020-18324.