CVE-2020-21387: XSS
Published Oct 4, 2021
·Updated
A cross-site scripting (XSS) vulnerability in the parameter typeen of Maccms 10 allows attackers to obtain the administrator cookie and escalate privileges via a crafted payload.
Affected Software
1 affected component
maccms Maccms=10.0
Event History
Oct 4, 2021
CVE Published
via MITRE·07:18 PM
Data Sourced
via MITRE·07:18 PM
Description
Frequently Asked Questions
1
What is CVE-2020-21387?
CVE-2020-21387 is a cross-site scripting (XSS) vulnerability in the parameter type_en of Maccms 10.
2
How does CVE-2020-21387 affect Maccms 10?
CVE-2020-21387 allows attackers to obtain the administrator cookie and escalate privileges via a crafted payload.
3
What is the severity of CVE-2020-21387?
CVE-2020-21387 has a severity value of 6.1, which is considered medium.
4
What is the Common Vulnerabilities and Exposures (CVE) reference for CVE-2020-21387?
The Common Vulnerabilities and Exposures (CVE) reference for CVE-2020-21387 is CVE-2020-21387.
5
How can I fix CVE-2020-21387 in Maccms 10?
To fix CVE-2020-21387 in Maccms 10, you should update to the latest version of the software.