CVE-2020-5650: XSS
Published Oct 21, 2020
·Updated
Cross-site scripting vulnerability in Simple Download Monitor 3.8.8 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.
Affected Software
1 affected component
Tipsandtricks-hq Simple Download Monitor Wordpress<=3.8.8
Event History
Oct 21, 2020
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this cross-site scripting vulnerability?
CVE-2020-5650
2
What is the severity rating of CVE-2020-5650?
The severity rating of CVE-2020-5650 is medium (6.1).
3
What is the affected software for CVE-2020-5650?
The affected software for CVE-2020-5650 is Simple Download Monitor 3.8.8 and earlier.
4
How can remote attackers exploit CVE-2020-5650?
Remote attackers can exploit CVE-2020-5650 by injecting an arbitrary script via unspecified vectors.
5
Is there a fix available for CVE-2020-5650?
Yes, an update to Simple Download Monitor version 3.8.9 or later can fix CVE-2020-5650.