CVE-2020-5751: XSS
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted operator.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-5751?
CVE-2020-5751 is a vulnerability in TCExam 14.2.2 that allows a remote authenticated attacker to conduct persistent cross-site scripting (XSS) attacks.
What is the severity of CVE-2020-5751?
The severity of CVE-2020-5751 is medium, with a CVSS score of 5.4.
How can an attacker exploit CVE-2020-5751?
An attacker can exploit CVE-2020-5751 by creating a crafted operator in TCExam 14.2.2, allowing them to conduct persistent cross-site scripting (XSS) attacks.
Which version of TCExam is affected by CVE-2020-5751?
TCExam 14.2.2 is affected by CVE-2020-5751.
Is there a fix available for CVE-2020-5751?
A fix for CVE-2020-5751 may be available from Tecnick for TCExam 14.2.2. Please refer to their official website or support channels for the latest information.