CVE-2020-19683: XSS
Published Dec 9, 2021
·Updated
A Cross Site Scripting (XSS) exists in ZZZCMS V1.7.1 via an editfile action in save.php.
Affected Software
1 affected component
ZZZCMS ZZZCMS=1.7.1
Event History
Dec 9, 2021
CVE Published
via MITRE·05:18 PM
Data Sourced
via MITRE·05:18 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this cross-site scripting (XSS) vulnerability?
The vulnerability ID is CVE-2020-19683.
2
What is the severity of CVE-2020-19683?
The severity of CVE-2020-19683 is medium with a CVSS score of 5.4.
3
How does the XSS vulnerability in ZZZCMS V1.7.1 occur?
The XSS vulnerability in ZZZCMS V1.7.1 occurs via an editfile action in save.php.
4
How can I fix the XSS vulnerability in ZZZCMS V1.7.1?
To fix the XSS vulnerability in ZZZCMS V1.7.1, update to the latest version of the software and apply any available patches or security updates.
5
Where can I find more information about the XSS vulnerability in ZZZCMS V1.7.1?
You can find more information about the XSS vulnerability in ZZZCMS V1.7.1 at https://zhhhy.github.io/2019/06/28/zzzcms/.