First published: Thu Sep 03 2020(Updated: )
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 allows XSS in _parts/header.php, within application/views/templates/clothesshop, application/views/templates/greenlabel, and application/views/templates/redlabel.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ecommerce-codeigniter-bootstrap Project Ecommerce-codeigniter-bootstrap | <2020-08-03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-25092.
The severity of CVE-2020-25092 is medium with a severity value of 6.1.
Ecommerce-CodeIgniter-Bootstrap before 2020-08-03 is affected by CVE-2020-25092.
The XSS vulnerability in CVE-2020-25092 is located in _parts/header.php within application/views/templates/clothesshop, application/views/templates/greenlabel, and application/views/templates/redlabel.
There is a fix available for CVE-2020-25092. You can find more information at [this link](https://github.com/kirilkirkov/Ecommerce-CodeIgniter-Bootstrap/commit/7c3c32d6526268b1c78d6d5741361e79292e9c22).