First published: Thu May 07 2020(Updated: )
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tecnick Tcexam | =14.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this security issue is CVE-2020-5746.
The affected software for this vulnerability is TCExam version 14.2.2.
CVE-2020-5746 is a persistent cross-site scripting (XSS) vulnerability.
An attacker can exploit CVE-2020-5746 by creating a crafted test that triggers the XSS attack.
CVE-2020-5746 has a severity rating of medium with a CVSS score of 5.4.