First published: Sat Dec 12 2020(Updated: )
Ignite Realtime Openfire 4.6.0 has create-bookmark.jsp groupchatJID Stored XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Igniterealtime Openfire | =4.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of Ignite Realtime Openfire 4.6.0 is CVE-2020-35199.
The severity rating of CVE-2020-35199 is medium, with a severity value of 5.4.
The affected software is Ignite Realtime Openfire 4.6.0.
The CWE ID of CVE-2020-35199 is CWE-79.
Yes, there is a known exploit for CVE-2020-35199. You can find more information at https://www.exploit-db.com/exploits/49233.