CVE-2020-8421: XSS
Published Jan 28, 2020
·Updated
An issue was discovered in Joomla! before 3.9.15. Inadequate escaping of usernames allows XSS attacks in comactionlogs.
Affected Software
1 affected component
Joomla Joomla\!>=3.9.0<3.9.14
Event History
Jan 28, 2020
CVE Published
via MITRE·08:58 PM
Data Sourced
via MITRE·08:58 PM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-8421?
CVE-2020-8421 is rated as a medium severity vulnerability due to its potential for XSS attacks.
2
How do I fix CVE-2020-8421?
To fix CVE-2020-8421, upgrade your Joomla! installation to version 3.9.15 or later.
3
What kind of attacks can CVE-2020-8421 enable?
CVE-2020-8421 can enable cross-site scripting (XSS) attacks through inadequate escaping of usernames.
4
What versions of Joomla! are affected by CVE-2020-8421?
CVE-2020-8421 affects all Joomla! versions from 3.9.0 to 3.9.14.
5
What component in Joomla! is vulnerable in CVE-2020-8421?
The com_actionlogs component in Joomla! is the part that exhibits the vulnerability described in CVE-2020-8421.