First published: Thu May 07 2020(Updated: )
Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tecnick Tcexam | =14.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5750 is a vulnerability in TCExam 14.2.2 that allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks.
CVE-2020-5750 has a severity rating of 6.1, which is considered medium.
An attacker can exploit CVE-2020-5750 by leveraging the insufficient output sanitization in TCExam 14.2.2 and conducting persistent cross-site scripting attacks via the self-registration feature.
CVE-2020-5750 affects TCExam 14.2.2.
You can find more information about CVE-2020-5750 at the following link: [link](https://www.tenable.com/security/research/tra-2020-31).