CVE-2020-36486: XSS
Published Oct 22, 2021
·Updated
Swift File Transfer Mobile v1.1.2 and below was discovered to contain a cross-site scripting (XSS) vulnerability via the 'path' parameter of the 'list' and 'download' exception-handling.
Affected Software
4 affected components
Swiftfiletransfer Swift File Transfer<=1.1.2
Apple iPhone OS
BlackBerry BlackBerry OS
Google Android
Event History
Oct 22, 2021
CVE Published
via MITRE·07:20 PM
Data Sourced
via MITRE·07:20 PM
Description
Frequently Asked Questions
1
What is CVE-2020-36486?
CVE-2020-36486 is a cross-site scripting (XSS) vulnerability in Swift File Transfer Mobile v1.1.2 and below.
2
What is the severity of CVE-2020-36486?
The severity of CVE-2020-36486 is medium, with a CVSS score of 6.1.
3
How does CVE-2020-36486 affect Swift File Transfer Mobile?
CVE-2020-36486 affects Swift File Transfer Mobile v1.1.2 and below through a cross-site scripting (XSS) vulnerability in the 'path' parameter of the 'list' and 'download' exception-handling.
4
Is Apple iPhone OS vulnerable to CVE-2020-36486?
No, Apple iPhone OS is not vulnerable to CVE-2020-36486.
5
Is Google Android vulnerable to CVE-2020-36486?
No, Google Android is not vulnerable to CVE-2020-36486.