CVE-2020-22732: XSS
Published Aug 5, 2021
·Updated
CMS Made Simple (CMSMS) 2.2.14 allows stored XSS via the Extensions > Fie Picker..
Affected Software
1 affected component
CMSmadesimple CMS Made Simple=2.2.14
Event History
Aug 5, 2021
CVE Published
via MITRE·04:24 PM
Data Sourced
via MITRE·04:24 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of CMS Made Simple (CMSMS) 2.2.14?
The vulnerability ID is CVE-2020-22732.
2
What is the severity level of CVE-2020-22732?
The severity level of CVE-2020-22732 is medium.
3
How does CVE-2020-22732 allow stored XSS?
CVE-2020-22732 allows stored XSS via the Extensions > File Picker.
4
Which version of CMS Made Simple (CMSMS) is affected by CVE-2020-22732?
CMS Made Simple (CMSMS) version 2.2.14 is affected by CVE-2020-22732.
5
Is there a fix available for CVE-2020-22732?
It is recommended to update CMS Made Simple (CMSMS) to a version that is not affected by CVE-2020-22732.