CVE-2020-21082: XSS
A cross-site scripting (XSS) vulnerability in the background administrator article management module of Maccms 8.0 allows attackers to steal administrator and user cookies via crafted payloads in the text fields for Chinese and English names.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-21082?
CVE-2020-21082 is a cross-site scripting (XSS) vulnerability in the background administrator article management module of Maccms 8.0.
How does CVE-2020-21082 work?
CVE-2020-21082 allows attackers to steal administrator and user cookies by injecting crafted payloads into the text fields for Chinese and English names.
What is the severity of CVE-2020-21082?
CVE-2020-21082 has a severity rating of 6.1, which is considered medium.
Which software versions are affected by CVE-2020-21082?
Maccms 8.0 is the affected software version for CVE-2020-21082.
How can I fix CVE-2020-21082?
To fix CVE-2020-21082, it is recommended to update Maccms to a version that includes a fix for this vulnerability.