CVE-2020-23721: XSS
Published Mar 10, 2021
·Updated
An issue was discovered in FUEL CMS V1.4.7. An attacker can use a XSS payload and bypass a filter via /fuelCM/fuel/pages/edit/1?lang=english.
Affected Software
1 affected component
TheDayLightStudio Fuel CMS=1.4.7
Event History
Mar 10, 2021
CVE Published
via MITRE·01:36 PM
Data Sourced
via MITRE·01:36 PM
Description
Frequently Asked Questions
1
What is CVE-2020-23721?
CVE-2020-23721 is a vulnerability that exists in FUEL CMS version 1.4.7.
2
What is the severity of CVE-2020-23721?
CVE-2020-23721 has a severity keyword of medium and a severity value of 5.4.
3
How does CVE-2020-23721 impact FUEL CMS?
CVE-2020-23721 allows an attacker to use a XSS payload and bypass a filter in FUEL CMS version 1.4.7.
4
How can I fix CVE-2020-23721?
To fix CVE-2020-23721, update FUEL CMS to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2020-23721?
You can find more information about CVE-2020-23721 at the following reference: [Link](https://github.com/daylightstudio/FUEL-CMS/issues/559)