First published: Thu Dec 17 2020(Updated: )
Cross Site Scripting (XSS) vulnerability in the Showtime2 Slideshow module in CMS Made Simple (CMSMS) 2.2.4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cmsmadesimple Cms Made Simple | =2.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-20138 is a Cross Site Scripting (XSS) vulnerability in the Showtime2 Slideshow module in CMS Made Simple (CMSMS) 2.2.4.
CVE-2020-20138 has a severity score of 6.1, which is considered medium severity.
CMS Made Simple (CMSMS) version 2.2.4 is affected by CVE-2020-20138.
The CWE of CVE-2020-20138 is CWE-79.
To fix CVE-2020-20138, it is recommended to upgrade CMS Made Simple (CMSMS) to a version that has patched the vulnerability.